VYPR

Just Another Guestbook

by JAG

CVEs (1)

  • CVE-2010-0665Feb 19, 2010
    risk 0.03cvss epss 0.02

    JAG (Just Another Guestbook) 1.14 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request for jag/database.sql.