membership.asp in Mini-Nuke 2.3 and earlier uses plaintext security codes, which allows remote attackers to register multiple times via automated scripts.
References
Link | Resource |
---|---|
http://www.nukedx.com/?getxpl=31 | Exploit Vendor Advisory |
http://www.nukedx.com/?viewdoc=31 | Exploit Vendor Advisory |
http://secunia.com/advisories/20317 | Vendor Advisory |
http://securityreason.com/securityalert/1002 | |
http://www.securityfocus.com/archive/1/435279/100/0/threaded |
Configurations
Information
Published : 2006-06-01 03:02
Updated : 2018-10-18 09:41
NVD link : CVE-2006-2733
Mitre link : CVE-2006-2733
JSON object : View
CWE
Products Affected
mini-nuke
- mini-nuke