Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q4rw-2c6x-6r6x

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/guestbook.mdb.

Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/guestbook.mdb.

EPSS

Процентиль: 88%
0.03844
Низкий

Связанные уязвимости

nvd
почти 16 лет назад

Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/guestbook.mdb.

EPSS

Процентиль: 88%
0.03844
Низкий