5

CVE-2006-0893

Exploit
NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mail addresses contained in filenames of profiles, and (2) the tmp directory, which lists names of uploaded attachments.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NoccNocc Version1.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.72% 0.745
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/bugtraq/2006-02/0418.html
Exploit
http://retrogod.altervista.org/noccw_10_incl_xpl.html
http://secunia.com/advisories/16921
Vendor Advisory
http://securitytracker.com/id?1015671
http://www.securityfocus.com/bid/16793
http://www.osvdb.org/23420
http://www.osvdb.org/23422