BTSaveMySql 1.2 stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain configuration and save files via direct requests.
References
Configurations
History
No history.
Information
Published : 2006-12-07 17:28
Updated : 2018-10-17 21:47
NVD link : CVE-2006-6378
Mitre link : CVE-2006-6378
CVE.ORG link : CVE-2006-6378
JSON object : View
Products Affected
widcomm
- btsavemysql
CWE