Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-5853
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-5853

Description:
Chilek Content Management System (aka ChiCoMaS) 2.0.4 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) obtain database credentials via a direct request for config.inc or (2) read database backups via a request for a backup/ URI.

CVE Status:
Candidate

References:

SREASON
  http://securityreason.com/securityalert/4872

SAID
  Secunia Advisory: SA30080

MISC
  http://www.bugreport.ir/index_59.htm

MILW0RM
  http://www.milw0rm.com/exploits/7532

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/499458/100/0/threaded


Return to the previous page.