CVE

Id
6724  
CVE No.
CVE-2002-2342  
Status
Candidate  
Description
Bannermatic 1, 2, and 3 stores the (1) ban.log, (2) ban.bak, (3) ban.dat and (4) banmat.pwd data files under the web document root with insufficient access control, which allows attackers to obtain sensitive information via a direct request for the files.  
Phase
Assigned (20071029)  
Votes
None (candidate not yet proposed)  
Comments