AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2001-0854

MEDIUM · CVSS 5 EPSS 1.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2001-12-06 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.0. It may be remotely exploitable.

CVE
CVE-2001-0854
Severity
MEDIUM
CVSS
5
EPSS
1.48%

Original NVD Description

PHP-Nuke 5.2 allows remote attackers to copy and delete arbitrary files by calling case.filemanager.php with admin.php as an argument, which sets the $PHP_SELF variable and makes it appear that case.filemanager.php is being called by admin.php instead of the user.