CVE-2006-6891

Vz (Adp) Forum 2.0.3 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-6891. PoCs published by 3l3ctric-Cracker.

AI-analyzed exploit summary This is a writeup describing an information disclosure vulnerability in Sv(ADP) Forum 2.0.3, where admin credentials are exposed via a direct file access. No exploit code is provided, only a proof-of-concept URL.

Description

Vz (Adp) Forum 2.0.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the administrative account name and password hash via a direct request for users/admin.txt.

Exploits (1)

exploitdb WRITEUP VERIFIED
by 3l3ctric-Cracker · textwebappsphp
https://www.exploit-db.com/exploits/3053

This is a writeup describing an information disclosure vulnerability in Sv(ADP) Forum 2.0.3, where admin credentials are exposed via a direct file access. No exploit code is provided, only a proof-of-concept URL.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Sv(ADP) Forum 2.0.3
No auth needed
Prerequisites: access to the target web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/31220
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/3053

Scores

EPSS 0.0223
EPSS Percentile 80.4%

Details

Status published
Products (1)
vz_forum/vz_forum 2.0.3
Published Dec 31, 2006
Tracked Since Feb 18, 2026