CVE-2002-2057
Last modified
CVE-2002-2057 is a vulnerability of currently unknown severity. TeeKai Forum 1.2 uses weak encryption of web usage statistics in data/member_log.txt, which is stored under the web document root with insufficient access control, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.. EPSS estimates a 1.65% chance of exploitation in the next 30 days.
Description
TeeKai Forum 1.2 uses weak encryption of web usage statistics in data/member_log.txt, which is stored under the web document root with insufficient access control, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Teekai | Teekai Forum | 1.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-2057?
How severe is CVE-2002-2057?
How do I fix CVE-2002-2057?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-2051The processor_web plugin for ModLogAn 0.5.0 through 0.7.11, …
- CVE-2002-2052Cisco 2611 router running IOS 12.1(6.5), possibly an interim…
- CVE-2002-2053The design of the Hot Standby Routing Protocol (HSRP), as im…
- CVE-2002-2054TeeKai Forum 1.2 allows remote attackers to authenticate as …
- CVE-2002-2055Cross-site scripting (XSS) vulnerability in userlog.php in T…
- CVE-2002-2056Cross-site scripting (XSS) vulnerability in TeeKai Forum 1.2…
- CVE-2002-2058TeeKai Tracking Online 1.0 uses weak encryption of web usage…7.5
- CVE-2002-2059BIOS D845BG, D845HV, D845PT and D845WN on Intel motherboards…
- CVE-2002-2060Buffer overflow in Links 2.0 pre4 allows remote attackers to…
- CVE-2002-2061Heap-based buffer overflow in Netscape 6.2.3 and Mozilla 1.0…
- CVE-2002-2062Cross-site scripting (XSS) vulnerability in ftp.htt in Inter…
- CVE-2002-2063AtGuard 3.2 allows remote attackers to bypass firwall filter…
Are you affected by CVE-2002-2057?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
