HIGH · 7.8

CVE-2006-1764

Hosting Controller 6.1 stores forum/db/forum.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as user name and passw...

Vulnerability Description

Hosting Controller 6.1 stores forum/db/forum.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as user name and password credentials. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:C/I:N/A:N
Confidentiality
COMPLETE
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Hosting ControllerHosting Controller<= 6.1_hotfix_2.9

References

FAQ

What is CVE-2006-1764?

CVE-2006-1764 is a vulnerability with a CVSS score of 7.8 (HIGH). Hosting Controller 6.1 stores forum/db/forum.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as user name and passw...

How severe is CVE-2006-1764?

CVE-2006-1764 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-1764?

Check the references section above for vendor advisories and patch information. Affected products include: Hosting Controller Hosting Controller.