RSS   Vulnerabilities for 'Coffeecup password wizard'   RSS

2003-12-31
 
CVE-2003-1394

 

 
CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under the web document root with insufficient access control, which allows remote attackers to obtain that information via a direct request for the file.

 

 >>> Vendor: Coffeecup software 3 Products
Coffeecup direct ftp
Coffeecup free ftp
Coffeecup password wizard


Copyright 2024, cxsecurity.com

 

Back to Top