CVE-2010-0765
02.03.2010, 18:30
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for _database/forumFips.mdb.Enginsight
Vendor | Product | Version |
---|---|---|
fipsasp | fipsforum | 2.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References