Medium
CVSS 5.0
Overview
Emefa Guestbook 3.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for guestbook.mdb.
Emefa Guestbook 3.0 stores sensitive information under the web root with insuffi...
Emefa Guestbook 3.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for guestbook.mdb.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: