header-logo
Suggest Exploit
vendor:
fswiki
by:
bd0rk
7,5
CVSS
HIGH
Password Disclosure Vulnerability
200
CWE
Product Name: fswiki
Affected Version From: 3.6.2
Affected Version To: 3.6.2
Patch Exists: YES
Related CWE: N/A
CPE: a:fswiki:fswiki
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006

fswiki 3.6.2 (user.dat) Password Disclosure Vulnerability

A vulnerability exists in fswiki 3.6.2 which allows an attacker to gain access to the user.dat file, which contains the usernames and passwords of all users of the fswiki application.

Mitigation:

The vendor has released a patch to address this vulnerability.
Source

Exploit-DB raw data:

                  fswiki 3.6.2 (user.dat) Password Disclosure Vulnerability



=> Affected Software: fswiki 3.6.2

=> Download: http://keihanna.dl.sourceforge.jp/fswiki/20797/wiki3_6_2.zip

=> F0under: bd0rk

=> Greetings: str0ke, TheJT, SHiKaA, Lu7k

[+]Exploit: http://[target]/[fswiki_path]/config/user.dat



#####The german Hacker bd0rk#####

# milw0rm.com [2006-12-30]