CVE-2002-0352

Phorum 3.3.2 allows remote attackers to determine the email addresses of the 10 most active users via a direct HTTP request to the stats.php program, which does not require authentication.

Scoring

CVSS base score
0.02
EPSS probability
0.58%
Published
2002-05-03
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs