| ID | CVE-2008-4170 | ||||||
| Sažetak | create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:N/C:P/I:N/A:N | ||||||
| Zadnje važnije ažuriranje | 11-10-2018 - 20:51 | ||||||
| Objavljeno | 22-09-2008 - 18:34 |

