5

CVE-2003-1304

EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information via a direct request.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Early ImpactProductcart Version1.1
Early ImpactProductcart Version1.2
Early ImpactProductcart Version1.3
Early ImpactProductcart Version1.4
Early ImpactProductcart Version1.5
Early ImpactProductcart Version1.6_b
Early ImpactProductcart Version1.6_b001
Early ImpactProductcart Version1.6_b002
Early ImpactProductcart Version1.6_b003
Early ImpactProductcart Version1.6_br
Early ImpactProductcart Version1.6_br001
Early ImpactProductcart Version1.6_br003
Early ImpactProductcart Version1.6b
Early ImpactProductcart Version1.6b001
Early ImpactProductcart Version1.6b002
Early ImpactProductcart Version1.6b003
Early ImpactProductcart Version1.6br
Early ImpactProductcart Version1.6br001
Early ImpactProductcart Version1.6br003
Early ImpactProductcart Version1.5002
Early ImpactProductcart Version1.5003
Early ImpactProductcart Version1.5003r
Early ImpactProductcart Version1.5004
Early ImpactProductcart Version1.6002
Early ImpactProductcart Version1.6003
Early ImpactProductcart Version2
Early ImpactProductcart Version2.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 7.5% 0.91
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.