[原文]LetterMerger 1.2 stores user information in Access database files with insecure permissions, which allows local users to obtain sensitive information. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
LetterMerger Database Local Information Disclosure
Local Access Required
Loss of Confidentiality
LetterMerger contains a flaw that may lead to an unauthorized information disclosure. The issue is due to user supplied information being stored with insecure permissions in Microsoft Access database files.
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.