CVE-2012-2905 - Exsert Software
Description
Artiphp CMS 5.5.0 Neo (r422) stores database backups with predictable names under the web root with insufficient access control which allows remote attackers to obtain sensitive information via a direct request.
Reference
http://www.exploit-db.com/exploits/18889 http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5091.php http://secunia.com/advisories/49195 http://osvdb.org/81991 https://exchange.xforce.ibmcloud.com/vulnerabilities/75690