The administrator/phpinfo.php script in Mambo Site Server 4.0.11 allows remote attackers to obtain sensitive information such as the full web root path via phpinfo.php, which calls the phpinfo function.
References
Configurations
Information
Published : 2002-12-30 21:00
Updated : 2017-07-28 18:29
NVD link : CVE-2002-2247
Mitre link : CVE-2002-2247
JSON object : View
CWE
CWE-16
Configuration
Products Affected
mambo
- mambo_site_server