CVE-2009-0760

Team Board <2.x - Info Disclosure

Title source: llm

Description

Team Board 1.x and 2.x stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for data/team.mdb.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Pouya_Server · textwebappsasp
https://www.exploit-db.com/exploits/7982

Scores

EPSS 0.0537
EPSS Percentile 89.9%

Classification

CWE
CWE-264
Status draft

Affected Products (2)

team5/team_board
team5/team_board

Timeline

Published Mar 06, 2009
Tracked Since Feb 18, 2026