header-logo
Suggest Exploit
vendor:
myPHP Guestbook
by:
ViRuSMaN
7,5
CVSS
HIGH
Database Backup Dump
N/A
CWE
Product Name: myPHP Guestbook
Affected Version From: 2.0.2
Affected Version To: 2.0.2
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009

myPHP Guestbook Database Backup Dump Vulnerability

myPHP Guestbook is vulnerable to a Database Backup Dump vulnerability. An attacker can access the backup.sql file which contains the database backup dump of the application. This can lead to the disclosure of sensitive information.

Mitigation:

The application should be configured to prevent access to the backup.sql file. Access to the file should be restricted to authorized personnel only.
Source

Exploit-DB raw data:

==============================================================================
        [»] ~ Note : [ Tribute to the martyrs of Gaza . ]
==============================================================================
        [»] myPHP Guestbook Database Backup Dump Vulnerability
==============================================================================

    [»] Script:             [ myPHP Guestbook v2.0.2 ]
    [»] Language:           [ PHP ]
    [»] Site page:          [ myPHP Guestbook is a open source project of Networkarea.ch ]
    [»] Download:           [ http://www.pc-service-backes.de/download/sonstige/myPHP_Guestbook_2.0.2.zip ]
    [»] Founder:            [ ViRuSMaN <v.-m@live.com - totti_55_3@yahoo.com> ]
    [»] Greetz to:          [ HackTeach Team , Egyptian Hackers , All My Friends & Sec-Attack.Com ]
    [»] My Home:            [ HackTeach.Org , Islam-Attack.Com ]

###########################################################################

===[ Exploit ]===

    [»] http://server/[path]/backup/backup.sql


Author: ViRuSMaN <-

###########################################################################