Vulnerabilities (CVE)

Filtered by vendor Citrusdb Subscribe
Filtered by product Citrusdb Customer Database
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-0229 1 Citrusdb 1 Citrusdb Customer Database 2023-12-10 5.0 MEDIUM N/A
CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.