Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code.
Link | Tags |
---|---|
http://www.procheckup.com/security_info/vuln_pr0302.html | |
http://secunia.com/advisories/9985 | third party advisory patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/13397 | vdb entry |
http://www.kb.cert.org/vuls/id/989580 | us government resource third party advisory patch |