5
CVSSv2

CVE-2006-6891

Published: 31/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Vz (Adp) Forum 2.0.3 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain the administrative account name and password hash via a direct request for users/admin.txt.

Vulnerable Product Search on Vulmon Subscribe to Product

vz forum vz forum 2.0.3

Exploits

########################################################################################################## #Sv(ADP) Forum 203 Remote Password Disclosure Vulnerablity ########################################################################################################## #Sname:ADP Forum ...