Back
CVE-2002-0878
SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing, (2) Hawk-i ASP and (3) DNS Manager allows remote attackers to bypass authentication via SQL code in the password field.
Published: Oct 4, 2002
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (3)
| Vendor | Product | Version |
|---|---|---|
| logisense | dns_manager_system | * |
| logisense | hawk-i | 5.2 |
| logisense | hawk-i | asp |
GitHub Security Advisory GHSA-w567-qh79-jxqc
SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing...
References (6)
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0010.html
- http://www.iss.net/security_center/static/9268.php Vendor Advisory
- http://www.securityfocus.com/bid/4931 Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0010.html
- http://www.iss.net/security_center/static/9268.php Vendor Advisory
- http://www.securityfocus.com/bid/4931 Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.29%
Top 33% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub