CVE-2009-0760
06.03.2009, 06:50
Team Board 1.x and 2.x stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for data/team.mdb.Enginsight
| Vendor | Product | Version |
|---|---|---|
| team5 | team_board | 1.0.0 |
| team5 | team_board | 2.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References