ID | CVE-2007-1901 | ||||||
Sažetak | SonicBB 1.0 allows remote attackers to obtain sensitive information via the (1) by[] parameter to search.php, (2) p[] parameter to viewforum.php, and the (3) id parameter to (a) viewforum.php or (b) members.php, which reveal the installation path in the resulting error message. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:M/Au:N/C:P/I:N/A:N | ||||||
Zadnje važnije ažuriranje | 16-10-2018 - 16:41 | ||||||
Objavljeno | 14-05-2007 - 21:19 |