Field Assessment
AI analysis pending.
CVE
CVE-2005-2192
Severity
MEDIUM
CVSS
5
EPSS
4.06%
Original Filing — NVD Description
SimplePHPBlog 0.4.0 stores password hashes in config/password.txt with insufficient access control, which allows remote attackers to obtain passwords via a brute force attack.