CVE
- Id
- 12342
- CVE No.
- CVE-2005-1136
- Status
- Candidate
- Description
- Simple PHP Blog (sphpBlog) 0.4.0 stores the (1) password.txt and (2) config.txt files under the web document root, which allows remote attackers to obtain sensitive information and crack passwords via a direct request to these files.
- Phase
- Assigned (20050416)
- Votes
- None (candidate not yet proposed)
- Comments