Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
KMSoft Guestbook (aka GBook) 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/db.mdb.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KMSoft Guestbook web 根目录敏感信息泄露漏洞
Vulnerability Description
KMSoft Guestbook的web根目录存在敏感信息泄露漏洞。KMSoft Guestbook(又称为 GBook)存储敏感信息在web根目录下,并且没有对配置进行足够的访问控制权限,允许远程攻击者通过对 db/db.mdb 的直接请求,下载数据库。
CVSS Information
N/A
Vulnerability Type
N/A