exploit-db-mirror/exploits/php/webapps/21894.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

7 lines
No EOL
469 B
Text

source: http://www.securityfocus.com/bid/5851/info
A problem with the default installation of Midicart PHP may make it possible for remote users to gain access to sensitive information.
The default installation of Midicart PHP does not place sufficient access control on files residing in the 'admin' folder. Files in this folder are meant to be accessed by privileged individuals and may contain sensitive information.
http://<site>/admin/credit_card_info.php