Required CVE Record Information
Description
Uapplication Uguestbook 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-database/guestbook.mdb.
References 5 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- exchange.xforce.ibmcloud.com: uapplication-information-disclosure(20314) vdb-entryx_transferred
- securitytracker.com: 1013830 vdb-entryx_transferred
- exploit-db.com: 8609 exploitx_transferred
- securityfocus.com: 20070107 Uguestbook Remote Password Disclosure Vulnerability mailing-listx_transferred
- osvdb.org: 15995 vdb-entryx_transferred