VYPR
Unrated severityNVD Advisory· Published Dec 7, 2006· Updated Jun 16, 2026

CVE-2006-6377

CVE-2006-6377

Description

Uploadscript 1.2 and earlier stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain the admin password hash via a direct request for /password.txt.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.