Vulnerability CVE-1999-1430


Published: 1999-01-01   Modified: 2012-02-12

Description:
PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.

CVSS2 => (AV:L/AC:L/Au:N/C:P/I:N/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
2.1/10
2.9/10
3.9/10
Exploit range
Attack complexity
Authentication
Local
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
None
Affected software
Royal -> Davinci 

 References:
http://marc.info/?l=bugtraq&m=91540043723185&w=2
http://www.securityfocus.com/bid/185

Copyright 2024, cxsecurity.com

 

Back to Top