漏洞信息详情
SmartWin CyberOffice Shopping Cart获得敏感信息漏洞
漏洞简介
SmartWin CyberOffice Shopping Cart 2版本(也称为CyberShop)安装带有全域可读权限_private目录。远程攻击者获得敏感信息。
漏洞公告
参考网址
来源: BID 名称: 1734 链接:http://www.securityfocus.com/bid/1734 来源: WIN2KSEC 名称: 20001002 DST2K0035: Credit card (customer) details exposed within CyberOff ice Shopping Cart v2 链接:http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0001.html 来源: XF 名称: cyberoffice-world-readable-directory 链接:http://xforce.iss.net/static/5318.php 来源: BUGTRAQ 名称: 20001002 DST2K0035: Credit card (customer) details exposed within CyberOff ice Shopping Cart v2 链接:http://marc.theaimsgroup.com/?l=bugtraq&m=97050819812055&w=2
受影响实体
- Smartwin_technology Cyberoffice_shopping_cart:2.0<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...