Vulnerability Details CVE-2006-2807
ASPwebSoft Speedy Asp Discussion Forum allows remote attackers to change the password of any account via a modified account id and possibly arbitrary values of the name, email, country, password, and passwordre parameters to profileupdate.asp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.053
EPSS Ranking 90.0%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2006-2807
-
cpe:2.3:a:aspwebsoft:speedy_asp_discussion_forum:*