CVE

Id
9049  
CVE No.
CVE-2004-0621  
Status
Candidate  
Description
admin.php in Newsletter ZWS allows remote attackers to gain administrative privileges via a list_user operation with the ulevel parameter set to 1 (administrator level), which lists all users and their passwords.  
Phase
Assigned (20040629)  
Votes
None (candidate not yet proposed)  
Comments