Vulnerabilities > Citrusdb > Citrusdb Customer Database > 0.3.1

DATE CVE VULNERABILITY TITLE RISK
2005-04-27 CVE-2005-0229 Remote Information Disclosure vulnerability in CitrusDB Credit Card Data
CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.
network
low complexity
citrusdb
5.0