5

CVE-2006-2422

phpCOIN 1.2.3 and earlier stores messages based upon e-mail addresses, which allows remote authenticated users to read messages for other users by adding the sender's e-mail address as an "additional contact".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Coinsoft TechnologiesPhpcoin Version1.2.1
Coinsoft TechnologiesPhpcoin Version1.2.1b
Coinsoft TechnologiesPhpcoin Version1.2.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.39% 0.688
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://forums.phpcoin.com/index.php?showtopic=5941
http://secunia.com/advisories/20088
Vendor Advisory
http://www.securityfocus.com/bid/17959
http://www.vupen.com/english/advisories/2006/1788
https://exchange.xforce.ibmcloud.com/vulnerabilities/26499