CVE-2012-4976

Publication date

2012-12-12 11:00:00

Family

mitre

State

PUBLISHED

Description

selectawasset.asp in Layton Helpbox 4.4.0 allows remote attackers to discover ODBC database credentials via an element=sys_asset_id request, which is not properly handled during construction of an error page.