Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for _database/forumFips.mdb.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fipsasp fipsForum web根目录敏感信息泄露漏洞
Vulnerability Description
fipsForum是一个含有一些高级功能的小型bbs。 fipsForum在web根目录下存储敏感信息,并且没有进行充分的访问控制限制,远程攻击者可以借助对数据库文件_database/forumFips.mdb的一个直接请求,下载数据库。
CVSS Information
N/A
Vulnerability Type
N/A