Vulnerabilities > Thenetguys > Aspired2Protect

DATE CVE VULNERABILITY TITLE RISK
2009-03-02 CVE-2008-6355 Permissions, Privileges, and Access Controls vulnerability in Thenetguys Aspired2Protect
The Net Guys ASPired2Protect stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to ASPired2Protect.mdb.
network
low complexity
thenetguys CWE-264
5.0