Vulnerabilities > CVE-2006-4897 - Unspecified vulnerability in Cmtexts

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
cmtexts
exploit available

Summary

CMtextS 1.0 and earlier stores users_logins/admin.txt under the web document root with insufficient access control, which allows remote attackers to obtain the administrator password.

Vulnerable Configurations

Part Description Count
Application
Cmtexts
1

Exploit-Db

descriptionCMtextS <= 1.0 (users_logins/admin.txt) Credentials Disclosure Vuln. CVE-2006-4897. Webapps exploit for php platform
fileexploits/php/webapps/2388.txt
idEDB-ID:2388
last seen2016-01-31
modified2006-09-17
platformphp
port
published2006-09-17
reporterKacper
sourcehttps://www.exploit-db.com/download/2388/
titleCMtextS <= 1.0 users_logins/admin.txt Credentials Disclosure Vuln
typewebapps