marks.php in NukeBookmarks 0.6 for PHP-Nuke allows remote attackers to obtain sensitive information via an invalid (1) file or (2) category parameter, which reveal the path in an error message.
References
Link | Resource |
---|---|
http://zone-h.org/advisories/read/id=7356 | Vendor Advisory |
http://nukebookmarks.sourceforge.net/ | |
http://marc.info/?l=bugtraq&m=111186145609320&w=2 |
Configurations
Information
Published : 2005-03-25 21:00
Updated : 2016-10-17 20:15
NVD link : CVE-2005-0900
Mitre link : CVE-2005-0900
JSON object : View
CWE
Products Affected
nukebookmarks
- nukebookmarks