EDB-4705
webappsphpVERIFIED
Flat PHP Board 1.2 - Multiple Vulnerabilities
CVE-2007-6399CVE-2007-6398CVE-2007-6397+2 more
KiNgOfThEwOrLd12/9/2007
Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials via a direct request for the username php file for any user account in users/.