CVE-2003-1304 Information
Feb 14, 2021
cve
Description
EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control which allows remote attackers to obtain sensitive database information via a direct request.
Reference
http://archives.neohapsis.com/archives/fulldisclosure/2003-q3/0081.html http://secunia.com/advisories/9195 http://www.earlyimpact.com/pdf/ProductCart_Security_Tips.pdf http://www.securityfocus.com/archive/1/438189/100/200/threaded http://www.securityfocus.com/bid/8112 https://exchange.xforce.ibmcloud.com/vulnerabilities/9816
Share on: