MEDIUM
FunkBoard 0.66CF, and possibly earlier versions, does not properly restrict access to the (1) admin/mysql_install.php and (2) admin/pg_install.php scripts, which allows attackers to obtain the database username and password or inject arbitrary PHP code into info.php
Published Aug 16, 2005
6.4
MEDIUMCVSS 2.0
EPSS 1.16%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.