Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control, which allows remote attackers to read the administrator's password.
References
Configurations
Information
Published : 2006-02-21 18:02
Updated : 2017-07-19 18:30
NVD link : CVE-2006-0843
Mitre link : CVE-2006-0843
JSON object : View
CWE
Products Affected
leif_m._wright
- web_blog