Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6395 (Board)

BugsAlert Home > CVE-2007-6395 (Board)
 
 

Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials via a direct request for the username php file for any user account in users/.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6395

Learn more about CVE-2007-6395 (Board)
 
Tags: cve-2007-6395 board

Related Items

      TROJ_PAGIPEF.BC

      CVE-2007-6017 (Backup Exec for Windows Server)

      VUPEN - Debian Security Update Fixes Kernel Security Bypass and DoS Issues

      Advanced Image Hosting "t" SQL Injection Vulnerability

      Mandriva Security Update Fixes Vixie Cron Local Denial of Service Issue

      CVE-2008-2049 (Mail Server)

      RedHat: Moderate: bind security, bug fix,

 

Pixel