Vulnerabilities > CVE-2004-1788 - Unspecified vulnerability in Asp-Nuke 1.0/1.2/1.3

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
asp-nuke
exploit available

Summary

ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to main.mdb.

Vulnerable Configurations

Part Description Count
Application
Asp-Nuke
3

Exploit-Db

descriptionASP-Nuke 1.0/1.2/1.3 Remote User Database Access Vulnerability. CVE-2004-1788. Webapps exploit for asp platform
idEDB-ID:23516
last seen2016-02-02
modified2004-01-04
published2004-01-04
reporterVietnamese Security Group
sourcehttps://www.exploit-db.com/download/23516/
titleASP-Nuke 1.0/1.2/1.3 - Remote User Database Access Vulnerability