CVE-2006-1718 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 7.6% (pctl 94)
Patch early
A public exploit exists.
Description
Magus Perde Clever Copy 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to view the database username and password via a direct request for connect.inc.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 7.56% — more likely to be exploited than 94% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2006-04-11 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| clever copy | clever copy |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Clever Copy 3.0 - 'Connect.INC' Information Disclosure | 2006-04-11 |
References
- http://advisories.echo.or.id/adv/adv28-K-159-2006.txt
- http://secunia.com/advisories/19579
- http://www.securityfocus.com/archive/1/430369/100/0/threaded
- http://www.securityfocus.com/bid/17461
- http://www.vupen.com/english/advisories/2006/1316
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25720
- http://advisories.echo.or.id/adv/adv28-K-159-2006.txt
- http://secunia.com/advisories/19579
- http://www.securityfocus.com/archive/1/430369/100/0/threaded
- http://www.securityfocus.com/bid/17461
- http://www.vupen.com/english/advisories/2006/1316
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25720
→ the Explorer · watch your stack · NVD