Vulnerabilities > Fluffington

DATE CVE VULNERABILITY TITLE RISK
2006-01-21 CVE-2006-0352 Information Disclosure vulnerability in Fluffington Flog 1.01/1.1.2
The default configuration of Fluffington FLog 1.01 installs users.0.dat under the web document root with insufficient access control, which might allow remote attackers to obtain sensitive information (login credentials) via a direct request.
network
low complexity
fluffington
5.0