CVE Vulnerabilities

CVE-2007-2944

Published: May 31, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

WabCMS 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/wabcmsn.mdb. NOTE: this issue was originally reported for webCMS, but this was an error by an unreliable researcher.

Affected Software

Name Vendor Start Version End Version
Wabcms Wabcms 1.0 (including) 1.0 (including)

References