Field Assessment
AI analysis pending.
Exhibit — Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
External Security References
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2008-6770
Severity
MEDIUM
CVSS
5
EPSS
5.90%
Original Filing — NVD Description
YourPlace 1.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to a database containing user credentials via a direct request for users.txt.