• Sign in

CVE-2003-1468

    CVE-2003-1468  
Description The Web_Links module in PHP-Nuke 6.0 through 6.5 final allows remote attackers to obtain the full web server path via an invalid cid parameter that is non-numeric or null, which leaks the pathname in an error message.
Impact
  CVSS v2 : 4.3 MEDIUM  
Type
  CWE-200  
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:P/I:N/A:N
Quick linksCVE, NVD, CERT, Metasploit, Exploit-db, Fulldisc, Bugtraq, Microsoft, Red Hat, Debian, GitHub code/issues, Google
References
http://www.securityfocus.com/archive/1/321313
http://www.securityfocus.com/bid/7589
https://exchange.xforce.ibmcloud.com/vulnerabilities/12436
  • FAQ
  • Terms of service
  • Privacy policy