[VIM] EZNewsletter V3 Arbitrary Database Disclosure Vulnerability

str0ke str0ke at milw0rm.com
Thu Jul 9 23:27:04 UTC 2009


I received this in the past and it shouldn't be counted as a vuln.

readme.txt
*****************************************************
*   WARNING  #SECURITY NOTICE#  WARNING             *
*                                                   *
*  I STRONGLY urge you to either rename the         *
*  database or put the database in a folder         *
*  outside your root folder.                        *
*                                                   *
*  If you dont, you run the risk of someone         *
*  accessing your database and getting your         *
*  login info.                                      *
*  This is true for all MS Access databases         *
*                                                   *
*****************************************************  



More information about the VIM mailing list