Vulnerabilities > Toddwoolums > ASP Download > 1.03

DATE CVE VULNERABILITY TITLE RISK
2009-04-21 CVE-2008-6739 Improper Authentication vulnerability in Toddwoolums ASP Download 1.03
Todd Woolums ASP Download management script 1.03 does not require authentication for setupdownload.asp, which allows remote attackers to gain administrator privileges via a direct request.
network
low complexity
toddwoolums CWE-287
7.5