view_album.php in SelectaPix 1.31 and earlier allows remote attackers to obtain the installation path via a certain request, which displays the path in an error message, possibly due to an invalid or missing parameter.
References
Link | Resource |
---|---|
http://securitytracker.com/id?1016085 | Exploit |
Configurations
Information
Published : 2006-05-19 03:02
Updated : 2008-09-05 14:04
NVD link : CVE-2006-2463
Mitre link : CVE-2006-2463
JSON object : View
CWE
Products Affected
out_of_the_trees_web_design
- selectapix