CVE-2009-2115 - CERT CVE
ID CVE-2009-2115
Sažetak admin.php in SkyBlueCanvas 1.1 r237 allows remote authenticated administrators to obtain sensitive information via an invalid id parameter, which reveals the installation path in an error message.
Reference
CVSS
Base: 6.8
Impact: 6.9
Exploitability:8.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE NONE NONE
CVSS vektor AV:N/AC:L/Au:S/C:C/I:N/A:N
Zadnje važnije ažuriranje 10-10-2018 - 19:39
Objavljeno 18-06-2009 - 21:30