CVE-2008-6375 Information
Feb 14, 2021
cve
Description
JBook stores sensitive information under the web root with insufficient access control which allows remote attackers to download the database file via a direct request to userids.mdb.
Reference
http://packetstormsecurity.org/0812-exploits/jbook-disclosesql.txt https://exchange.xforce.ibmcloud.com/vulnerabilities/47034
Share on: