Bug: Bradford CampusManager v3.1(6) Sensitive Data Disclosure (WLB-2007050052 Ascii Version)

English Version
WLB2

CVE WLB2

 Topic: Bradford CampusManager v3.1(6) Sensitive Data Disclosure
 Credit: John Martinelli
 Date: 2007.05.17
 CWE: N/A
 CVE: CVE-2007-2629 (Show details)

Use CVE to see details like:
- CVSS2,
- Affected Software,
- References

Risk
Local
Remote
Low
No
Yes

Bradford CampusManager v3.1(6) Sensitive Data Disclosure

The following directories should be protected from world readability. Child folders include backup, log, and
configuration files.

http://cmnms.target.com:8080/runTime/
http://cmnms.target.com:8080/remediationReports/

Vulnerable: CampusManager Network Control Application Server v3.1(6) (others should also be affected)

John Martinelli
john (at) martinelli (dot) com [email concealed]
http://john-martinelli.com

May 3rd, 2007

[ ASCII VERSION ]

Copyright 2012, cxsecurity.com