Vulnerabilities > Webwizguide > WEB WIZ Guestbook > 6.0

DATE CVE VULNERABILITY TITLE RISK
2009-04-02 CVE-2003-1571 Permissions, Privileges, and Access Controls vulnerability in Webwizguide web WIZ Guestbook 6.0/8.21
Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for database/WWGguestbook.mdb.
network
low complexity
webwizguide CWE-264
5.0