Vulnerabilities > Recruitment Software

DATE CVE VULNERABILITY TITLE RISK
2005-12-31 CVE-2005-4626 SQL-Injection vulnerability in Recruitment Software
The default configuration of Recruitment Software installs admin/site.xml under the web document root with insufficient access control, which might allow remote attackers to obtain sensitive information (MySQL database credentials) via a direct request.
network
low complexity
recruitment-software
5.0