VYPR
Vendor

Codeavalanche

Products
6
CVEs
6
Across products
6
Status
Private

Products

6

Recent CVEs

6
  • CVE-2008-5932Jan 21, 2009
    risk 0.03cvss epss 0.03

    CodeAvalanche FreeForum stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the password via a direct request for _private/CAForum.mdb. NOTE: some of these details are obtained from third party information.

  • CVE-2008-5900Jan 12, 2009
    risk 0.03cvss epss 0.04

    CodeAvalanche Articles stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAArticles.mdb. NOTE: some of these details are obtained from third party information.

  • CVE-2008-5899Jan 12, 2009
    risk 0.03cvss epss 0.03

    CodeAvalanche FreeForAll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFFAPage.mdb. NOTE: some of these details are obtained from third party information.

  • CVE-2008-5898Jan 12, 2009
    risk 0.03cvss epss 0.04

    CodeAvalanche Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CADirectory.mdb. NOTE: some of these details are obtained from third party information.

  • CVE-2008-5897Jan 12, 2009
    risk 0.03cvss epss 0.03

    CodeAvalanche FreeWallpaper stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFreeWallpaper.mdb. NOTE: some of these details are obtained from third party information.

  • CVE-2008-5896Jan 12, 2009
    risk 0.03cvss epss 0.04

    CodeAvalanche RateMySite stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CARateMySite.mdb. NOTE: some of these details are obtained from third party information.