5
CVSSv2

CVE-2008-5218

Published: 25/11/2008 Updated: 29/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

ScriptsEz FREEze Greetings 1.0 stores pwd.txt under the web root with insufficient access control, which allows remote malicious users to obtain cleartext passwords.

Vulnerable Product Search on Vulmon Subscribe to Product

scriptsez freeze greetings 1.0

Exploits

<?php /** * FREEze Greetings 10 Remote Password Retrieve Exploit * Exploit by cOndemned * * Greetz : suN8Hclf, 0in, m4r1usz, str0ke, rtgn, doctor, sidpsycho [] * Special thx to ZaBeaTy for developing such a sexy regexp ;) Thx m8 */ echo <<< Header [~] FREEze Greetings 10 Remote Password Retrieve Exploit [~] Exploit by cOndemn ...