quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access control, which allows remote attackers to obtain the cleartext administrator password and gain privileges.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=92462991805485&w=2 |
Configurations
History
No history.
Information
Published : 1999-04-20 04:00
Updated : 2024-02-04 16:31
NVD link : CVE-1999-0607
Mitre link : CVE-1999-0607
CVE.ORG link : CVE-1999-0607
JSON object : View
Products Affected
i-soft
- quikstore
CWE