Unknown · Radio Istek Scripti · CVE-2009-4096
**Name of the Vulnerable Software and Affected Versions**
RADIO istek scripti version 2.5
**Description**
The issue allows remote attackers to obtain user credentials due to insufficient access control of sensitive information stored under the web root. This can be achieved via a direct request for estafresgaftesantusyan.inc.
**Recommendations**
For version 2.5, restrict access to sensitive information stored under the web root to prevent unauthorized access. Consider implementing proper access controls to protect user credentials. As a temporary workaround, consider restricting direct requests for estafresgaftesantusyan.inc until a more permanent solution is available.