VirtuaStore 2.0 stores sensitive files under the web root with insufficient access control, which allows remote malicious users to obtain local database information by directly accessing database/virtuastore.mdb.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
virtuastore virtuastore 2.0 |