CVE-2006-2823 Information
Feb 14, 2021
cve
Description
Katrien De Graeve a.shopKart 2.0 (aka ashopKart20) stores sensitive information under the web root with insufficient access control which allows remote attackers to download a database via a direct request for (1) admin/scart.mdb and possibly (2) admin/scart97.mdb.
Reference
http://secunia.com/advisories/20485 http://securityreason.com/securityalert/1025 http://securitytracker.com/id?1009549 http://www.osvdb.org/26237 http://www.securityfocus.com/archive/1/435746/100/0/threaded http://www.vupen.com/english/advisories/2006/2208 https://exchange.xforce.ibmcloud.com/vulnerabilities/15599
Share on: