CVE-2003-1213

Publication date

2005-05-19 04:00:00

Family

mitre

State

PUBLISHED

Description

The default installation of MaxWebPortal 1.30 stores the portal database under the web document root with insecure access control, which allows remote attackers to obtain sensitive information via a direct request to database/db2000.mdb.