Required CVE Record Information
Description
Natterchat 1.12 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for natterchat112.mdb.
References 3 Total
- exchange.xforce.ibmcloud.com: natterchat-natterchat112-info-disclosure(47147) vdb-entry
- exploit-db.com: 7370 exploit
- securityreason.com: 4761 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- exchange.xforce.ibmcloud.com: natterchat-natterchat112-info-disclosure(47147) vdb-entryx_transferred
- exploit-db.com: 7370 exploitx_transferred
- securityreason.com: 4761 third-party-advisoryx_transferred