PT-2009-1528 · Preprojects · Preprojects Pre Resume Submitter

Published

2009-02-04

·

Updated

2017-08-08

·

CVE-2008-6053

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions PreProjects Pre Resume Submitter (affected versions not specified)
Description The issue allows remote attackers to obtain passwords due to insufficient access control of the onlineresume.mdb file stored under the web root. This can be exploited by making a direct request to access the file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-6053

Affected Products

Preprojects Pre Resume Submitter