AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2002-1233

LOW · CVSS 2.6 EPSS 0.56%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2002-11-04 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.6. It affects Apache, Debian.

CVE
CVE-2002-1233
Severity
LOW
CVSS
2.6
EPSS
0.56%
Apache Debian

Original NVD Description

A regression error in the Debian distributions of the apache-ssl package (before 1.3.9 on Debian 2.2, and before 1.3.26 on Debian 3.0), for Apache 1.3.27 and earlier, allows local users to read or modify the Apache password file via a symlink attack on temporary files when the administrator runs (1) htpasswd or (2) htdigest, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2001-0131.