Security Advisory

CVE-2007-1044

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-02-21 17:00:00
Last updated 2024-08-07 12:43:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Pearson Education PowerSchool 4.3.6 allows remote attackers to list the contents of the admin folder via a URI composed of the admin/ directory name and an arbitrary filename ending in ".js." NOTE: it was later reported that this issue had been addressed by 5.1.2.