CVE-2007-5787
Micro Login System 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing a password via a direct request for userpwd.txt.
Date published : 2007-11-01
http://www.securityfocus.com/bid/26246
http://www.securityfocus.com/archive/1/482858/100/0/threaded
