5
CVSSv2

CVE-2002-1432

Published: 11/04/2003 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

MidiCart stores the midicart.mdb database file under the Web document root, which allows remote malicious users to steal sensitive information by directly requesting the database.

Vulnerable Product Search on Vulmon Subscribe to Product

coxco support salescart-pro

coxco support salescart-std

coxco support metacart 2.sql

coxco support midicart asp maxi

coxco support a-cart 2.0

coxco support midicart asp

coxco support midicart asp plus

Exploits

source: wwwsecurityfocuscom/bid/5438/info Midicart ASP is a commercially available e-commerce solution distributed by Coxco Support It is available for the Microsoft Windows operating system The default installation of Midicart ASP does not place sufficient access control on the midicartmdb file Due to this lack of access control, it ...