CVE-2008-1752
11.04.2008, 21:05
ezRADIUS 0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials via a direct request for (1) config.ini or (2) database.ini. NOTE: some of these details are obtained from third party information.Enginsight
Vendor | Product | Version |
---|---|---|
achmad_zaenuri | ezradius | 0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References