Vulnerabilities > CVE-2005-4371 - Input Validation vulnerability in Acidcat CMS

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
acidcat
exploit available

Summary

Acidcat 2.1.13 and earlier stores the database under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a request to databases/acidcat.mdb.

Vulnerable Configurations

Part Description Count
Application
Acidcat
3

Exploit-Db

descriptionAcidcat CMS 2.1.13 acidcat.mdb Remote Information Disclosure. CVE-2005-4371 . Webapps exploit for asp platform
idEDB-ID:26874
last seen2016-02-03
modified2005-12-19
published2005-12-19
reporter[email protected]
sourcehttps://www.exploit-db.com/download/26874/
titleAcidcat CMS 2.1.13 acidcat.mdb Remote Information Disclosure