Vulnerabilities > Aspindir > Uranyumsoft Listing Service

DATE CVE VULNERABILITY TITLE RISK
2010-01-06 CVE-2009-4585 Permissions, Privileges, and Access Controls vulnerability in Aspindir Uranyumsoft Listing Service
UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/db.mdb.
network
low complexity
aspindir CWE-264
5.0