Date:
12 July 2006
Incident Type: Vulnerability Disclosure
WASC Threat Classification: Insufficient Authorization
Altiris seems to have designed their servers so that it is easy to both access their customers upload as well as find out their e-mail addresses.
References: