Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ASPApp PortalAPP远程用户数据库访问漏洞
Vulnerability Description
ASPApp PortalAPP是一款基于WEB的应用程序开发工具。 ASPApp PortalAPP不正确存放用户信息的数据库,远程攻击者可以利用这个漏洞未授权获得数据库数据。 ASPApp PortalAPP把包含用户敏感信息的数据库存在放在任何人可访问的WEB目录中,任意用户可以直接访问数据库文件获得敏感信息。利用这些信息可进一步对系统进行攻击。
CVSS Information
N/A
Vulnerability Type
N/A