Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-4465
Description:DeluxeBB 1.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain user and configuration information, log data, and gain administrative access via a direct request to scripts in (1) templates/ including (2) templates/deluxe/admincp/, (3) templates/corporate/admincp/, and (4) templates/blue/admincp/; (5) images/; (6) logs/ including (7) logs/cp.php; (8) wysiwyg/; (9) docs/; (10) classes/; (11) lang/; and (12) settings/.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-4465
BugTraq ID: 37448
http://www.securityfocus.com/bid/37448
http://www.exploit-db.com/exploits/10598
XForce ISS Database: deluxebb-admin-security-bypass(54975)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54975
XForce ISS Database: deluxebb-cp-info-disclosure(54977)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54977
XForce ISS Database: deluxebb-multiple-info-disclosure(54978)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54978




© 1998-2025 E-Soft Inc. All rights reserved.