Логотип exploitDog
bind:CVE-2006-6866
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2006-6866

Количество 2

Количество 2

nvd логотип

CVE-2006-6866

около 19 лет назад

STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.

CVSS2: 7.8
EPSS: Низкий
github логотип

GHSA-78c8-qm22-rp9r

почти 4 года назад

STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2006-6866

STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.

CVSS2: 7.8
8%
Низкий
около 19 лет назад
github логотип
GHSA-78c8-qm22-rp9r

STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.

8%
Низкий
почти 4 года назад

Уязвимостей на страницу