CVE-2006-4772 Information
Feb 14, 2021
cve
Description
HotPlug CMS stores sensitive information under the web root with insufficient access control which allows remote attackers to read the admin password and database credentials via a direct request for includes/class/config.inc.
Reference
http://securityreason.com/securityalert/1572 http://www.securityfocus.com/archive/1/445761/100/0/threaded
Share on: