CVE
- Id
- 12631
- CVE No.
- CVE-2005-1425
- Status
- Candidate
- Description
- Uapplication Uguestbook 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-database/guestbook.mdb.
- Phase
- Assigned (20050503)
- Votes
- None (candidate not yet proposed)
- Comments