CVE-2003-1540
WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.
Scoring
- CVSS base score
- 0.22
- EPSS probability
- 5.42%
- Published
- 2008-02-13
- Last modified
- 2026-03-16
Affected products
- n/a n/a