DokuWiki before 2006-03-09c enables the debug feature by default, which allows remote attackers to obtain sensitive information by calling doku.php with the X-DOKUWIKI-DO HTTP header set to "debug".
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-09-11 10:04
Updated : 2018-10-17 14:39
NVD link : CVE-2006-4679
Mitre link : CVE-2006-4679
JSON object : View
CWE
Products Affected
andreas_gohr
- dokuwiki