Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

The Tiger 100

#38741of 56,330
7.5Total CVSS
Vulnerabilities · 1
PT-2007-1978
7.5
2007-01-26
Scriptsez · Scriptsez Smart Php Subscriber · CVE-2007-0518
**Name of the Vulnerable Software and Affected Versions** Scriptsez Smart PHP Subscriber (affected versions not specified) **Description** The issue allows remote attackers to obtain encoded passwords due to insufficient access control of sensitive information stored under the web root. This can be achieved by making a direct request for pwd.txt. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.