Unrated severityNVD Advisory· Published Apr 15, 2006· Updated Apr 16, 2026
CVE-2006-1437
CVE-2006-1437
Description
UPOINT @1 Event Publisher stores sensitive information under the web document root with insufifcient access control, which allows remote attackers to read private comments via a direct request to eventpublisher.txt.
Affected products
1- cpe:2.3:a:upoint:at1_event_publisher:2003-12-18:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.