Haakon Nilsen Simple Internet Publishing System (SIPS) 0.2.2 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain password and other user information via a direct request to a user-specific configuration directory.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sips sips 0.2.2 |