CVE Vulnerabilities

CVE-2005-2956

Published: Sep 16, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

ATutor 1.5.1, and possibly earlier versions, stores temporary chat logs under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain user chat conversations via direct requests to those files.

Affected Software

Name Vendor Start Version End Version
Atutor Adaptive_technology_resource_centre 1.5.1 (including) 1.5.1 (including)

References