CVE-2008-2864

eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:elinestudio:site_composer:2.5:*:*:*:*:*:*:*
cpe:2.3:a:elinestudio:site_composer:*:*:*:*:*:*:*:*

Information

Published : 2008-06-25 05:36

Updated : 2018-10-11 13:44


NVD link : CVE-2008-2864

Mitre link : CVE-2008-2864


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

elinestudio

  • site_composer