CVE-2007-0116

Digger Solutions Intranet Open Source (IOS) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for data/intranet.mdb.
Configurations

Configuration 1 (hide)

cpe:2.3:a:digger_solutions:intranet_open_source:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:25

Type Values Removed Values Added
References () http://aria-security.com/forum/showthread.php?goto=newpost&t=88 - () http://aria-security.com/forum/showthread.php?goto=newpost&t=88 -
References () http://osvdb.org/33379 - () http://osvdb.org/33379 -
References () http://securityreason.com/securityalert/2109 - () http://securityreason.com/securityalert/2109 -
References () http://www.securityfocus.com/archive/1/456047/100/0/threaded - () http://www.securityfocus.com/archive/1/456047/100/0/threaded -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/31308 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/31308 -

Information

Published : 2007-01-09 02:28

Updated : 2024-11-21 00:25


NVD link : CVE-2007-0116

Mitre link : CVE-2007-0116

CVE.ORG link : CVE-2007-0116


JSON object : View

Products Affected

digger_solutions

  • intranet_open_source