Vulnerabilities > CVE-2002-0582 - Unspecified vulnerability in Workforceroi Xpede 4.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, which allows remote attackers to read the reports by accessing the directory.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-04/0273.html
- http://archives.neohapsis.com/archives/bugtraq/2002-04/0273.html
- http://www.iss.net/security_center/static/8905.php
- http://www.iss.net/security_center/static/8905.php
- http://www.securityfocus.com/bid/4554
- http://www.securityfocus.com/bid/4554