CVE-2008-7069
25.08.2009, 10:30
All Club CMS (ACCMS) 0.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database configuration information, including credentials, via a direct request to accms.dat.Enginsight
Vendor | Product | Version |
---|---|---|
paul_arbogast | accms | 𝑥 ≤ 0.0.2 |
paul_arbogast | accms | 0.0.1a:a |
paul_arbogast | accms | 0.0.1c:c |
paul_arbogast | accms | 0.0.1d:d |
paul_arbogast | accms | 0.0.1e:e |
paul_arbogast | accms | 0.0.1f:f |
paul_arbogast | accms | 0.0.1g:g |
paul_arbogast | accms | 0.0.1h:h |
𝑥
= Vulnerable software versions
Common Weakness Enumeration