# CVE-2002-0810

## Summary

- **CVE ID:** CVE-2002-0810
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Apr 2, 2003
- **Last Modified:** Mar 16, 2026

## Description

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc)
- [CNA](http://www.securityfocus.com/bid/4964)
- [CNA](http://archives.neohapsis.com/archives/bugtraq/2002-06/0054.html)
- [CNA](http://www.iss.net/security_center/static/9306.php)
- [CNA](http://www.osvdb.org/6399)
- [CNA](http://bugzilla.mozilla.org/show_bug.cgi?id=92263)
- [CNA](http://www.redhat.com/support/errata/RHSA-2002-109.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.86%
- **EPSS Percentile:** 74.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._