CVE-2002-1820

register.php in Ultimate PHP Board (UPB) 1.0 and 1.0b uses an administrative account Admin with a capital "A," but allows a remote attacker to impersonate the administrator by registering an account name of admin with a lower case "a."

Scoring

CVSS base score
0.06
EPSS probability
1.53%
Published
2005-06-28
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs