Vulnerabilities > Dblog

DATE CVE VULNERABILITY TITLE RISK
2007-09-21 CVE-2007-5026 Permissions, Privileges, and Access Controls vulnerability in Dblog CMS 2.0
dBlog CMS, probably 2.0, stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing an admin password hash via a direct request for dblog.mdb.
network
low complexity
dblog CWE-264
5.0