CVE-2008-5780 Information
Feb 14, 2021
cve
Description
Forest Blog 1.3.2 stores sensitive information under the web root with insufficient access control which allows remote attackers to download the database file containing passwords via a direct request for blog.mdb.
Reference
http://securityreason.com/securityalert/4842 https://exchange.xforce.ibmcloud.com/vulnerabilities/47359 https://www.exploit-db.com/exploits/7466
Share on: