Security Advisory

CVE-2001-1044

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-02-02 05:00:00
Last updated 2024-08-08 04:44:06
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does not restrict access, which could allows remote attackers to obtain sensitive information such as MySQL passwords and usernames from the mysql.class file.