Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0135 (Snitz Forums)

BugsAlert Home > CVE-2008-0135 (Snitz Forums)
 
 

Snitz Forums 2000 3.4.06 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for forum/snitz_forums_2000.mdb.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0135

Learn more about CVE-2008-0135 (Snitz Forums)
 
Tags: cve-2008-0135 snitz forums

Related Items

      Joomla Volunteer Management System Component "job_id" SQL Injection

      Vuln: ActiveWebSoftwares ASPReferral 'Merchantsadd.asp' SQL Injection Vulnerability

      August 2007 - Microsoft Releases 9 Security Advisories

      LI-Guestbook "country" SQL Injection Vulnerability

      phpMyAdmin Cross-Site Request Forgery Vulnerabilities

      Mandriva Security Update Fixes Squid Cache Update Reply DoS Issue

      FrSIRT - Redhat Security Update Fixes yum-rhn-plugin Security Bypass Issue

 

Pixel