BTSaveMySql 1.2 stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain configuration and save files via direct requests.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Btsavemysql |
Widcomm |
1.2 (including) |
1.2 (including) |
References