Vulnerabilities > Aspindir > Shibby Shop > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-06-26 CVE-2008-2873 Permissions, Privileges, and Access Controls vulnerability in Aspindir Shibby Shop
sHibby sHop 2.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request to Db/urun.mdb.
network
low complexity
aspindir CWE-264
5.0