header-logo
Suggest Exploit
vendor:
PortalApp
by:
SecurityFocus
8.5
CVSS
HIGH
Unauthorized Access
287
CWE
Product Name: PortalApp
Affected Version From: ASPapp PortalApp
Affected Version To: ASPapp PortalApp
Patch Exists: No
Related CWE: CVE-2003-0945
CPE: a:aspapp:portalapp
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: None
2003

Unauthorized Access in ASPapp PortalApp

ASPapp PortalApp is vulnerable to an unauthorized access vulnerability due to the way user credentials are stored on the system. An attacker can exploit this vulnerability by accessing the data/8275.mdb file, which contains the user credentials, and gaining access to sensitive information.

Mitigation:

To mitigate this vulnerability, the data/8275.mdb file should be removed or restricted to authorized users only.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/9354/info

A problem has been identified in ASPapp PortalApp when user credentials are stored on a system. Because of this, an attacker may be able to gain unauthorized access to sensitive information.

http://www.example.com/APP Portall/data/8275.mdb