7.5
CVSSv2

CVE-1999-0753

Published: 17/08/1999 Updated: 09/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The w3-msql CGI script provided with Mini SQL allows remote malicious users to view restricted directories.

Vulnerable Product Search on Vulmon Subscribe to Product

hughes msql 2.0

hughes msql 2.0.10

Exploits

source: wwwsecurityfocuscom/bid/591/info Under certain versions of Mini SQL, the w3-msql CGI script allows users to view directories which are set for private access via htaccess files W3-mSQL converts any form data passed to a script into global Lite variables and these variables can then be accessed by your script code When an HTML ...