Dmx Forum 2.1a stores _includes/bd.inc under the web root with insufficient access control, which allows remote attackers to obtain database username and password information.
References
Configurations
Information
Published : 2006-06-12 13:06
Updated : 2011-03-07 18:37
NVD link : CVE-2006-2946
Mitre link : CVE-2006-2946
JSON object : View
CWE
Products Affected
dmx_forum
- dmx_forum