CVE-2008-5773
30.12.2008, 20:30
Nukedit 4.9.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing usernames and passwords via a direct request for database/dbsite.mdb.Enginsight
Vendor | Product | Version |
---|---|---|
nukedit | nukedit | 4.9.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration