MEDIUM
MetaCart2.sql stores the user database under the web document root without access controls, which allows remote attackers to obtain sensitive information such as passwords and credit card numbers via a direct request for metacart.mdb
Published Aug 31, 2002
6.4
MEDIUMCVSS 2.0
EPSS 1.48%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.