Bugtraq mailing list archives

aeNovo Database Content Disclosure Vulnerability


From: farhad koosha <farhadkey () yahoo com>
Date: 12 Mar 2005 17:59:09 -0000



The problem is that the aeNovo database file "dbase/aeNovo1.mdb" by default is accessible. you can disclose the ADMIN's 
password .
The Login Page : "logon.asp"


Current thread: