Files
CVEs-PoC/2008/CVE-2008-7069.md
T
2024-06-18 02:51:15 +02:00

18 lines
715 B
Markdown

### [CVE-2008-7069](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7069)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
All Club CMS (ACCMS) 0.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database configuration information, including credentials, via a direct request to accms.dat.
### POC
#### Reference
- https://www.exploit-db.com/exploits/7266
#### Github
No PoCs found on GitHub currently.