Vulnerabilities > EFS Software > Easy Address Book

DATE CVE VULNERABILITY TITLE RISK
2006-11-04 CVE-2006-5715 Cross-Site Scripting vulnerability in EFS Software Easy Address Book 1.2
Easy File Sharing (EFS) Easy Address Book 1.2, when run on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of an HTTP GET request, which accesses the alternate data stream.
network
low complexity
efs-software
5.0