2006-12-07 17:00:00
mitre
PUBLISHED
BTSaveMySql 1.2 stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain configuration and save files via direct requests.