PT-2004-3608 · Phpmychat · Phpmychat
Publicado
2004-12-31
·
Atualizado
2008-09-05
·
CVE-2004-2718
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
PHPMyChat version 0.14.5
Description
The issue allows attackers to obtain sensitive information, including database passwords, by directly requesting the setup.php3 file, which is not removed or protected after installation.
Recommendations
For PHPMyChat version 0.14.5, remove or protect the setup.php3 file after installation to prevent unauthorized access.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Phpmychat