Dxil

2 exploits Active since May 2005
CVE-2005-0853 EXPLOITDB text WRITEUP
betaparticle blog <3.0 - Info Disclosure
betaparticle blog (bp blog) stores the database under the web root, which allows remote attackers to obtain sensitive information via a direct request to (1) dbBlogMX.mdb for versions before 3.0, or (2) Blog.mdb for versions 3.0 and later. NOTE: it was later reported that vector 2 also affects versions 6.0 through 9.0.
CVE-2008-5929 EXPLOITDB text WORKING POC
VP-ASP Shopping Cart 6.50 - Info Disclosure
VP-ASP Shopping Cart 6.50 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database containing the password via a direct request for database/shopping650.mdb. NOTE: some of these details are obtained from third party information.