Vulnerability Details CVE-2007-5919
MyWebFTP, possibly 5.3.2, stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain an MD5 password hash via a direct request for pass/pass.txt.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 65.2%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2007-5919
-
cpe:2.3:a:mywebftp:mywebftp:*