Ublog Reload 1.0 through 1.0.4 stores ublogreload.mdb under the web root, which allows remote attackers to read usernames and hashed passwords via a direct request to ublogreload.mdb.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-01 21:00
Updated : 2016-10-17 20:15
NVD link : CVE-2005-0938
Mitre link : CVE-2005-0938
JSON object : View
CWE
Products Affected
uapplication
- ublog_reload