Vulnerabilities > Brainjar

DATE CVE VULNERABILITY TITLE RISK
2009-07-27 CVE-2009-2606 Permissions, Privileges, and Access Controls vulnerability in Brainjar ASP Football Pool 2.3
ASP Football Pool 2.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for NFL.mdb.
network
low complexity
brainjar CWE-264
5.0