The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive inf…
Info
Summary
The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0001.html Exploit
- http://marc.info/?l=bugtraq&m=97050819812055&w=2
- http://www.securityfocus.com/bid/1734 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5318
- http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0001.html Exploit
- http://marc.info/?l=bugtraq&m=97050819812055&w=2
- http://www.securityfocus.com/bid/1734 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5318
Timeline
- nvd_ingest NVD