Vulnerabilities > CVE-2006-6480 - Input Validation vulnerability in Scriptphp Annoncescripthp 2.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
scriptphp

Summary

admin/admin_membre/fiche_membre.php in AnnonceScriptHP 2.0 allows remote attackers to obtain sensitive information via the idmembre parameter, which discloses the passwords for arbitrary users.

Vulnerable Configurations

Part Description Count
Application
Scriptphp
1