CVE Database
/

CVE-2003-1540

Back to search

CVE-2003-1540

Published: Feb 13, 2008

Modified: Aug 8, 2024

PUBLISHED

Description

WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.

VendorProductVersions

n/a

n/a

affected
n/a

References

1006352
vdb-entry
x_refsource_SECTRACK
7147
vdb-entry
x_refsource_BID
20030319 WF-Chat
mailing-list
x_refsource_BUGTRAQ
8396
third-party-advisory
x_refsource_SECUNIA
3645
third-party-advisory
x_refsource_SREASON
wf-chat-plaintext-passwords(11571)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now