CVE-2009-1941 Information

Description

PAD Site Scripts 3.6 stores sensitive information under the web document root with insufficient access control which allows remote attackers to download the database and obtain sensitive information via a direct request for dbbackup.txt.

Reference

https://exchange.xforce.ibmcloud.com/vulnerabilities/50911 https://www.exploit-db.com/exploits/8850

Share on: