testMaker Data Export Remote Information Disclosure Vulnerability
BID:29273
Info
testMaker Data Export Remote Information Disclosure Vulnerability
| Bugtraq ID: | 29273 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-2354 |
| Remote: | Yes |
| Local: | No |
| Published: | May 19 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | testMaker |
| Vulnerable: |
testMaker testMaker 3.0p9 |
| Not Vulnerable: |
testMaker testMaker 3.0p10 |
Discussion
testMaker Data Export Remote Information Disclosure Vulnerability
testMaker is prone to a remote information-disclosure vulnerability because of an unspecified error in the data export functionality.
Exploiting this issue will allow attackers to obtain potentially sensitive information that may aid in further attacks.
The issue affects versions prior to testMaker 3.0p10.
testMaker is prone to a remote information-disclosure vulnerability because of an unspecified error in the data export functionality.
Exploiting this issue will allow attackers to obtain potentially sensitive information that may aid in further attacks.
The issue affects versions prior to testMaker 3.0p10.
Exploit / POC
testMaker Data Export Remote Information Disclosure Vulnerability
Attackers will likely exploit this issue via a browser.
Attackers will likely exploit this issue via a browser.
Solution / Fix
testMaker Data Export Remote Information Disclosure Vulnerability
Solution:
The vendor has released updates. Please see the references for more information.
Solution:
The vendor has released updates. Please see the references for more information.
References
testMaker Data Export Remote Information Disclosure Vulnerability
References:
References:
- testMaker Project Homepage (testMaker)
- testMaker Release Name: 3.0p10 (testMaker)