CVE-2008-7118 Information
Feb 14, 2021
cve
Description
WeBid auction script 0.5.4 stores sensitive information under the web root with insufficient access control which allows remote attackers to obtain SQL query logs via a direct request for logs/cron.log.
Reference
http://www.securityfocus.com/bid/30945 https://exchange.xforce.ibmcloud.com/vulnerabilities/44820 https://www.exploit-db.com/exploits/6339
Share on: