Medium
CVSS 5.0
Overview
Natterchat 1.12 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for natterchat112.mdb.
Natterchat 1.12 stores sensitive information under the web root with insufficien...
Natterchat 1.12 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for natterchat112.mdb.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: