11894Third-party advisory
http://secunia.com/advisories/11894 CVE-2004-2718
phpMyChat 0.14.5 - Remote Improper File Permissions
Record summary
CVE-2004-2718 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBphpMyChat 0.14.5 - Remote Improper File PermissionsExploitDB exploitby sysbugNot analyzed1 file
References
3securiteam.com
http://www.securiteam.com/unixfocus/6D00S0KC0S.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-2718