CVE
- Id
- 24549
- CVE No.
- CVE-2007-1192
- Status
- Candidate
- Description
- Thomas R. Pasawicz HyperBook Guestbook 1.30 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an admin password hash via a direct request for data/gbconfiguration.dat.
- Phase
- Assigned (20070302)
- Votes
- None (candidate not yet proposed)
- Comments