Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2008-6494

Disclosure Date: March 20, 2009 (last updated October 04, 2023)
ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.
0
Attacker Value
Unknown

CVE-2009-0328

Disclosure Date: January 29, 2009 (last updated October 04, 2023)
ROBS-PROJECTS Digital Sales IPN (aka DS-IPN.NET or DS-IPN Paypal Shop) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for Database/Sales.mdb.
0
Attacker Value
Unknown

CVE-2008-5601

Disclosure Date: December 16, 2008 (last updated October 04, 2023)
User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.
0