CVE-2011-5204 describes a vulnerability in Akiva WebBoard 8.x where user passwords are stored in plaintext within the database. This allows local attackers to easily access sensitive information by directly reading the database contents. The vulnerability has a low CVSS score of 1.9, indicating a low severity due to requiring local access and medium attack complexity, with the primary impact being confidentiality loss. While no active exploitation or Metasploit/Nuclei modules exist, an SQL injection exploit is available on ExploitDB, though there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.0CPE matchmatch criteria | cpe:2.3:a:akiva:webboard:8.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.