CVE-2008-6494
20.03.2009, 00:30
ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.Enginsight
Vendor | Product | Version |
---|---|---|
robs-projects | asp_user_engine.net | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration