Freelance Auction Script 1.0 stores user passwords in plaintext in the tbl_users table, which allows attackers to gain privileges by reading the table.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Freelance_auction_script | Freelance_auction | 1.0 (including) | 1.0 (including) |
References