Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2002-0903
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to action.php to approve a new registration, along with predictable new user ID's, which allows remote attackers to hijack new user accounts via a brute force attack on the new user ID and the code value.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
WoltLab Burning Board可猜测帐户激活字符串漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
WoltLab Burning Board是一款免费基于WEB的论坛程序,由PHP结合MYSQL编写。 WoltLab Burning Board在激活帐户处理上存在漏洞,可导致远程攻击者提交激活URL请求激活帐户。 当用户在WoltLab Burning Board论坛上建立一新帐户时,他们会获得一链接,必须点击此链接才能激活使用新的帐户,不过此链接使用可猜测 格式,任意攻击者可以通过提交类似的激活用户链接请求来激活其他用户的帐户功能。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
-n/a n/a -
II. Public POCs for CVE-2002-0903
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2002-0903
Please Login to view more intelligence information
New Vulnerabilities
V. Comments for CVE-2002-0903

No comments yet


Leave a comment