5
CVE-2005-4249
- EPSS 1.79%
- Veröffentlicht 15.12.2005 11:03:00
- Zuletzt bearbeitet 16.06.2026 22:18:27
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
ADP Forum 2.0 through 2.0.3 stores sensitive information in plaintext files under the web document root with insufficient access control, which allows remote attackers to obtain user credentials via requests to the forum/users directory.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.79% | 0.754 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://secunia.com/advisories/18027
http://securityreason.com/securityalert/253
http://www.blogcu.com/Liz0ziM/144336/
http://www.securityfocus.com/archive/1/419393/100/0/threaded