CVE-2002-1353

LocalWEB2000 HTTP server 2.1.0 stores passwords in plain text under the web document root in users.lst, which allows remote attackers to obtain the passwords via a direct request to users.lst.

Scoring

CVSS base score
0.01
EPSS probability
0.36%
Published
2005-04-14
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs