CyberSec.Space Logo
Back to CVE Browser

CVE-2006-0103

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.1040%
EPSS Percentile14.72th
PublishedJan 6, 2006
Last ModifiedApr 16, 2026

Vulnerability Description

TinyPHPForum 3.6 and earlier stores the (1) users/[USERNAME].hash and (2) users/[USERNAME].email files under the web root with insufficient access control, which allows remote attackers to list all registered users and possibly obtain other sensitive information.

Affected Platforms (CPE)

πŸ“¦
Ralph Capper

Tinyphpforum

= 3.5
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.6
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.46
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.47
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.48
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.49
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.499

References & Advisories

Related Vulnerabilities