5
CVSSv2

CVE-2013-6953

Published: 03/01/2014 Updated: 25/02/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

BlogEngine.NET 2.8.0.0 and previous versions allows remote malicious users to read usernames and password hashes via a request for the sioc.axd file.

Vulnerable Product Search on Vulmon Subscribe to Product

dotnetblogengine blogengine.net 1.5

dotnetblogengine blogengine.net 1.6

dotnetblogengine blogengine.net 2.0

dotnetblogengine blogengine.net 2.5

dotnetblogengine blogengine.net 2.7

dotnetblogengine blogengine.net 1.4.5

dotnetblogengine blogengine.net 2.6

dotnetblogengine blogengine.net