Simple Chat 1.x - User Information Disclosure



EKU-ID: 27889 CVE: OSVDB-53304 OSVDB-ID:
Author: subj Published: 2003-03-21 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/7168/info

Simple Chat! does not restrict access to sensitive information by default. An attacker could use this information to launch attacks against other users.

http://www.example.com/chat/data/usr