5
CVSSv2

CVE-2008-5885

Published: 12/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Net Guys ASPired2Quote stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download the database file containing usernames and passwords via a direct request for admin/quote.mdb. NOTE: some of these details are obtained from third party information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

thenetguys aspired2quote _nil_

Exploits

######################################################### --------------------------------------------------------- Portal Name: ASPired2Quote Vendor : thenetguysus/Home/Quoteasp Author : Pouya_Server , Pouyas3rver@Gmailcom Vulnerability : (DD) --------------------------------------------------------- #################################### ...