CVE-2001-1290

critical

Description

admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/6754

http://www.securityfocus.com/bid/2942

http://www.osvdb.org/12326

http://archives.neohapsis.com/archives/bugtraq/2001-06/0386.html

Details

Source: Mitre, NVD

Published: 2001-06-28

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.03137