CVE-2004-1786
PortalApp - Unauthenticated Sensitive Information Exposure via Direct Request to 8275.mdb
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1786. PoCs published by newbie6290.
AI-analyzed exploit summary This entry describes an information disclosure vulnerability in ASPapp PortalApp where user credentials are stored insecurely, allowing unauthorized access to sensitive data via direct URL access to the database file.
Description
PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb.
Exploits (1)
This entry describes an information disclosure vulnerability in ASPapp PortalApp where user credentials are stored insecurely, allowing unauthorized access to sensitive data via direct URL access to the database file.