CVE-2004-2608

SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator's account.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:smartwebby:smart_guest_book:2:*:*:*:*:*:*:*

Information

Published : 2004-12-30 21:00

Updated : 2017-07-19 18:29


NVD link : CVE-2004-2608

Mitre link : CVE-2004-2608


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

smartwebby

  • smart_guest_book