TROYANOSYVIRUS
Voltar para CVEs

CVE-2004-2608

N/A

Descricao

SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator's account.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado12/31/2004
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

smartwebby:smart_guest_book

Fraquezas (CWE)

CWE-264

Referencias

http://secunia.com/advisories/12401(af854a3a-2127-422b-91ae-364da2661108)
http://securitytracker.com/id?1011084(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/9363(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.