5
CVSSv2

CVE-2006-3204

Published: 24/06/2006 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Ultimate PHP Board (UPB) 1.9.6 and previous versions uses a cryptographically weak block cipher with a large key collision space, which allows remote malicious users to determine a suitable decryption key given the plaintext and ciphertext by obtaining the plaintext password, which is sent when logging in, and the ciphertext, which is set in the pass_env cookie.

Vulnerable Product Search on Vulmon Subscribe to Product

ultimate php board ultimate php board 1.9.6

ultimate php board ultimate php board 1.8

ultimate php board ultimate php board 1.8.2

ultimate php board ultimate php board 1.9