CVE-2012-4976
12.12.2012, 11:38
selectawasset.asp in Layton Helpbox 4.4.0 allows remote attackers to discover ODBC database credentials via an element=sys_asset_id request, which is not properly handled during construction of an error page.Enginsight
| Vendor | Product | Version |
|---|---|---|
| layton_technology | helpbox | 4.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration