// For flags

CVE-2002-1654

 

Severity Score

7.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

4
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provides a distinct attack vector and may make it easier to conduct brute force password guessing without detection.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2002-12-31 CVE Published
  • 2005-03-29 CVE Reserved
  • 2024-03-04 EPSS Updated
  • 2024-08-08 CVE Updated
  • 2024-08-08 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Iplanet
Search vendor "Iplanet"
Iplanet Web Server
Search vendor "Iplanet" for product "Iplanet Web Server"
6.0
Search vendor "Iplanet" for product "Iplanet Web Server" and version "6.0"
-
Affected
Iplanet
Search vendor "Iplanet"
Iplanet Web Server
Search vendor "Iplanet" for product "Iplanet Web Server"
enterprise_4.0
Search vendor "Iplanet" for product "Iplanet Web Server" and version "enterprise_4.0"
-
Affected
Iplanet
Search vendor "Iplanet"
Iplanet Web Server
Search vendor "Iplanet" for product "Iplanet Web Server"
enterprise_4.1
Search vendor "Iplanet" for product "Iplanet Web Server" and version "enterprise_4.1"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
2.0
Search vendor "Netscape" for product "Enterprise Server" and version "2.0"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.0
Search vendor "Netscape" for product "Enterprise Server" and version "3.0"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.1
Search vendor "Netscape" for product "Enterprise Server" and version "3.1"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.2
Search vendor "Netscape" for product "Enterprise Server" and version "3.2"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.3
Search vendor "Netscape" for product "Enterprise Server" and version "3.3"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.4
Search vendor "Netscape" for product "Enterprise Server" and version "3.4"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.5
Search vendor "Netscape" for product "Enterprise Server" and version "3.5"
-
Affected
Netscape
Search vendor "Netscape"
Enterprise Server
Search vendor "Netscape" for product "Enterprise Server"
3.6
Search vendor "Netscape" for product "Enterprise Server" and version "3.6"
-
Affected