VendorsAlstrasoftwebhost_directoryany version
Vulnerabilities

Alstrasoft Webhost Directory any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2006-6818
AlstraSoft Web Host Directory allows remote attackers to bypass authentication and change the admin password via a direct request to admin/config.
Published 2006-12-29 · Modified
7.5EPSS 0.016
CVE-2006-6819
AlstraSoft Web Host Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a backup database via a direct request for admin/backup/db.
Published 2006-12-29 · Modified
6.41 PoCEPSS 0.019
CVE-2006-6817
AlstraSoft Web Host Directory allows remote attackers to obtain sensitive information by requesting any invalid URI, which reveals the path in an error message, a different vulnerability than CVE-2006-2617.
Published 2006-12-29 · Modified
5.0EPSS 0.011