Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
login.php in php-Board 1.0 stores plaintext passwords in $username.txt with insufficient access control under the web document root, which allows remote attackers to obtain sensitive information via a direct request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Board用户密码泄露漏洞
Vulnerability Description
PHP-Board是一款基于WEB的论坛程序。 php-board用户信息存储方式和限制不正确,远程攻击者可以利用这个漏洞获得任何用户的密码信息。 php-board把用户信息以文本方式存储在系统上,并可以通过WEB直接访问,远程攻击者可以请求用户文件并获得php-board的用户和管理员密码。
CVSS Information
N/A
Vulnerability Type
N/A