CVE-2008-5218 Information

Description

ScriptsEz FREEze Greetings 1.0 stores pwd.txt under the web root with insufficient access control which allows remote attackers to obtain cleartext passwords.

Reference

http://osvdb.org/49883 http://secunia.com/advisories/32744 http://securityreason.com/securityalert/4633 http://www.securityfocus.com/bid/32325 https://www.exploit-db.com/exploits/7140

Share on: