CVE-2007-1192
Thomas R. Pasawicz HyperBook Guestbook 1.30 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an admin password hash via a direct request for data/gbconfiguration.dat.
Date published : 2007-03-02
http://www.securityfocus.com/bid/22754
http://downloads.securityfocus.com/vulnerabilities/exploits/22754.py