Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

The Tiger 100

#35504de 53,779
7.5CVSS total
Vulnerabilidades · 1
PT-2007-1978
7.5
2007-01-26
Scriptsez · Scriptsez Smart Php Subscriber · CVE-2007-0518
**Name of the Vulnerable Software and Affected Versions** Scriptsez Smart PHP Subscriber (affected versions not specified) **Description** The issue allows remote attackers to obtain encoded passwords due to insufficient access control of sensitive information stored under the web root. This can be achieved by making a direct request for pwd.txt. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.