Ocean12 Contact Manager Pro 1.02 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12con.mdb.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Contact_manager | Ocean12_technologies | 1.02-nil (including) | 1.02-nil (including) |