Acidcat CMS 3.5.3 and previous versions stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database containing credentials via a direct request for databases/acidcat_3.mdb.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
acidcat acidcat cms 3.4.0 |
||
acidcat acidcat cms |
||
acidcat acidcat cms 2.1.13 |
||
acidcat acidcat cms 2.1.12 |
||
acidcat acidcat cms 3.5.2 |
||
acidcat acidcat cms 3.5.1 |
||
acidcat acidcat cms 3.5.0 |
||
acidcat acidcat cms 2.1.11 |
||
acidcat acidcat cms 3.3.5 |
||
acidcat acidcat cms 3.4.2 |
||
acidcat acidcat cms 3.4.1 |