Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2008-6494
Disclosure Date: March 20, 2009 (last updated October 04, 2023)
ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.
0
Attacker Value
Unknown
CVE-2009-0328
Disclosure Date: January 29, 2009 (last updated October 04, 2023)
ROBS-PROJECTS Digital Sales IPN (aka DS-IPN.NET or DS-IPN Paypal Shop) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for Database/Sales.mdb.
0
Attacker Value
Unknown
CVE-2008-5601
Disclosure Date: December 16, 2008 (last updated October 04, 2023)
User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.
0