Vulnerability Details CVE-2003-1571
Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for database/WWGguestbook.mdb. NOTE: it was later reported that 8.21 is also affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.028
EPSS Ranking 85.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2003-1571
-
cpe:2.3:a:webwizguide:web_wiz_guestbook:6.0
-
cpe:2.3:a:webwizguide:web_wiz_guestbook:8.21