Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4hvv-pc2w-v673

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.

ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.

EPSS

Процентиль: 82%
0.02229
Низкий

Связанные уязвимости

nvd
больше 17 лет назад

ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.

EPSS

Процентиль: 82%
0.02229
Низкий