Vulnerabilities > CVE-2007-0518 - Unspecified vulnerability in Scriptsez Smart PHP Subscriber

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
scriptsez
exploit available

Summary

Scriptsez Smart PHP Subscriber (aka subscribe) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain encoded passwords via a direct request for pwd.txt.

Vulnerable Configurations

Part Description Count
Application
Scriptsez
1

Exploit-Db

descriptionSmart PHP Subscriber Multiple Disclosure Vulnerabilities. CVE-2007-0518. Webapps exploit for php platform
idEDB-ID:10437
last seen2016-02-01
modified2009-12-14
published2009-12-14
reporterMilos Zivanovic
sourcehttps://www.exploit-db.com/download/10437/
titleSmart PHP Subscriber Multiple Disclosure Vulnerabilities