Files
CVEs-PoC/2006/CVE-2006-0843.md
T
2024-06-18 02:51:15 +02:00

19 lines
698 B
Markdown

### [CVE-2006-0843](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0843)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control, which allows remote attackers to read the administrator's password.
### POC
#### Reference
- http://securityreason.com/securityalert/522
- http://www.evuln.com/vulns/82/summary.html
#### Github
No PoCs found on GitHub currently.