cve/2006/CVE-2006-0843.md

19 lines
698 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2006-0843](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0843)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control, which allows remote attackers to read the administrator's password.
### POC
#### Reference
- http://securityreason.com/securityalert/522
- http://www.evuln.com/vulns/82/summary.html
#### Github
No PoCs found on GitHub currently.