CVE-2009-1821
DMXReady Registration Manager 1.1 - Unauthenticated Sensitive Information Exposure via Direct Database File Access
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-1821. PoCs published by S4S-T3rr0r!sT.
AI-analyzed exploit summary This is a writeup describing a path disclosure vulnerability in DMXReady Registration Manager 1.1, where the database file is directly accessible via a predictable URL. No exploit code is provided, only a description and examples of vulnerable endpoints.
Description
DMXReady Registration Manager 1.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for databases/webblogmanager.mdb.
Exploits (1)
This is a writeup describing a path disclosure vulnerability in DMXReady Registration Manager 1.1, where the database file is directly accessible via a predictable URL. No exploit code is provided, only a description and examples of vulnerable endpoints.