CVE-2009-3199

CVE-2009-3199

CVE-2009-3199 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Uebimiau Webmail 3.2.0-2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database with usernames and password hashes via a direct request for system_admin/admin.ucf.

Learn more about our Web App Pen Testing.