← Back

CVE-2006-4080

nvd nist
Published: Aug 11, 2006Modified: Apr 16, 2026

JSON object

Loading...
2.6
Vector
AV:N/AC:H/Au:N/C:P/I:N/A:N
Exploitability: 4.9 / Impact: 2.9
Source: NVD

Description

DeluxeBB 1.08, and possibly earlier, uses cookies that include the MD5 hash of a password, which allows remote attackers to gain privileges by sniffing or cross-site scripting (XSS) and conduct password guessing attacks.

Affected (5)

Products: Deluxebb: Deluxebb
1 product
Deluxebb
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Deluxebb
Up to 1.08
Version 1.05
Version 1.06
Version 1.07
Version 1.0

References (4)

Timeline

No history available yet.