HTTP: EasyNews

This signature detects attempts to exploit a known vulnerability in EasyNews, a text-based Internet news posting system. Attackers can access scripts (due to improper permission checking) and gain admin privileges.

Extended Description

Remote attackers can exploit this vulnerability to show all passwords of members and administrators, and access administrator scripts without administrator access.

Short Name
HTTP:CGI:EASYNEWS-ADMIN1
Severity
Warning
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
EasyNews
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?