paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php, (4) main.php, (5) viewall.php, (6) download.php, (7) email.php, (8) file.php, (9) rate.php, or (10) stats.php, which reveals the path in an error message.
References
Configurations
Information
Published : 2004-04-26 21:00
Updated : 2017-07-10 18:31
NVD link : CVE-2004-1974
Mitre link : CVE-2004-1974
JSON object : View
CWE
Products Affected
php_arena
- pafiledb