CVE-2002-0589

PVote before 1.9 allows remote attackers to change the administrative password and gain privileges by directly calling ch_info.php with the newpass and confirm parameters both set to the new password.

Scoring

CVSS base score
0.26
EPSS probability
6.41%
Published
2002-06-11
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs