CVE-2005-3766
N/A
N/A
Summary
Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/archive/1/417218
- http://secunia.com/advisories/17655
- http://secunia.com/advisories/17505
References
- http://www.securityfocus.com/archive/1/417218
- http://secunia.com/advisories/17655
- http://secunia.com/advisories/17505
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.