CVE Vulnerabilities

CVE-2005-1648

Published: May 18, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Gurgens (GASoft) Ultimate Forum 1.0 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords.

Affected Software

Name Vendor Start Version End Version
Gurgens_ultimate_forum Gurgens 2.1 (including) 2.1 (including)

References