6.7 Medium
AI Score
Confidence
Low
0.01 Low
EPSS
Percentile
83.5%
phpCOIN 1.2.3 and earlier stores messages based upon e-mail addresses, which allows remote authenticated users to read messages for other users by adding the sender’s e-mail address as an “additional contact”.
forums.phpcoin.com/index.php?showtopic=5941
secunia.com/advisories/20088
www.securityfocus.com/bid/17959
www.vupen.com/english/advisories/2006/1788
exchange.xforce.ibmcloud.com/vulnerabilities/26499