Vulnerabilities > Scriptsez > Smart PHP Subscriber > High

DATE CVE VULNERABILITY TITLE RISK
2007-01-26 CVE-2007-0518 Information Disclosure vulnerability in Smart PHP Subscriber
Scriptsez Smart PHP Subscriber (aka subscribe) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain encoded passwords via a direct request for pwd.txt.
network
low complexity
scriptsez
7.5