CVE-2006-5248 Information

Description

Eazy Cart stores sensitive information under the web root with insufficient access control which allows remote attackers to download a customer database via a direct request for admin/config/customer.dat. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

Reference

http://secunia.com/advisories/22286

Share on: