exploit-db-mirror/exploits/cgi/remote/20938.txt
Offensive Security b4c96a5864 DB: 2021-09-03
28807 changes to exploits/shellcodes
2021-09-03 20:19:21 +00:00

7 lines
No EOL
432 B
Text

source: https://www.securityfocus.com/bid/2889/info
DCShop is a GCI-based ecommerce system from DCScripts.
Under certain configurations, a beta version of this product can allow a remote user to request and obtain files containing confidential order data, including credit card and other private customer information, as well as the DCShop admnistrator login ID and password.
http://theTargetHost/cgi-bin/DCShop/Orders/orders.txt