CVE-2009-0498 Information

Description

Virtual GuestBook (vgbook) 2.1 stores sensitive information under the web root with insufficient access control which allows remote attackers to download the database file via a direct request to guestbook.mdb.

Reference

https://www.exploit-db.com/exploits/7744

Share on: