CVE-2008-7069
25.08.2009, 10:30
All Club CMS (ACCMS) 0.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database configuration information, including credentials, via a direct request to accms.dat.Enginsight
| Vendor | Product | Version |
|---|---|---|
| paul_arbogast | accms | 𝑥 ≤ 0.0.2 |
| paul_arbogast | accms | 0.0.1a:a |
| paul_arbogast | accms | 0.0.1c:c |
| paul_arbogast | accms | 0.0.1d:d |
| paul_arbogast | accms | 0.0.1e:e |
| paul_arbogast | accms | 0.0.1f:f |
| paul_arbogast | accms | 0.0.1g:g |
| paul_arbogast | accms | 0.0.1h:h |
𝑥
= Vulnerable software versions
Common Weakness Enumeration