VYPR

User Engine.NET

by ASP

CVEs (1)

  • CVE-2008-6494Mar 20, 2009
    risk 0.03cvss epss 0.02

    ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.