Total
6955 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2012-0690 | 1 Tibco | 4 Spotfire Analytics Server, Spotfire Professional, Spotfire Server and 1 more | 2012-03-13 | 5.0 MEDIUM | N/A |
TIBCO Spotfire Web Application, Web Player Application, Automation Services Application, and Analytics Client Application in Spotfire Analytics Server before 10.1.2; Server before 3.3.3; and Web Player, Automation Services, and Professional before 4.0.2 allow remote attackers to obtain sensitive information via a crafted URL. | |||||
CVE-2011-3695 | 1 111webcalendar | 1 111webcalendar | 2012-03-12 | 5.0 MEDIUM | N/A |
111WebCalendar 1.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by footer.php and certain other files. | |||||
CVE-2011-3697 | 1 Achievo | 1 Achievo | 2012-03-12 | 5.0 MEDIUM | N/A |
Achievo 1.4.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/graph/jpgraph/jpgraph_radar.php and certain other files. | |||||
CVE-2011-3698 | 1 Adaptcms | 1 Adaptcms | 2012-03-12 | 5.0 MEDIUM | N/A |
AdaptCMS 2.0.2 Beta allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by inc/poll_vote.php and certain other files. | |||||
CVE-2011-3699 | 1 John Lim | 1 Adodb | 2012-03-12 | 5.0 MEDIUM | N/A |
John Lim ADOdb Library for PHP 5.11 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tests/test-active-record.php and certain other files. | |||||
CVE-2011-3700 | 1 Anelectron | 1 Advanced Electron Forum | 2012-03-12 | 5.0 MEDIUM | N/A |
Advanced Electron Forum (AEF) 1.0.8 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by languages/english/deletetopic_lang.php. | |||||
CVE-2011-3701 | 1 Alegrocart | 1 Alegrocart | 2012-03-12 | 5.0 MEDIUM | N/A |
AlegroCart 1.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by common.php and certain other files. | |||||
CVE-2011-3702 | 1 Anantasoft | 1 Ananta Gazelle | 2012-03-12 | 5.0 MEDIUM | N/A |
Ananta Gazelle 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/template.php and certain other files. | |||||
CVE-2011-3703 | 1 Anecms | 1 Anecms | 2012-03-12 | 5.0 MEDIUM | N/A |
AneCMS 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by widgets/menu/index.php and certain other files. | |||||
CVE-2011-3704 | 1 Apprain | 1 Apprain | 2012-03-12 | 5.0 MEDIUM | N/A |
appRain 0.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by cron.php. | |||||
CVE-2011-3705 | 1 Michael Armbruster | 1 Arctic Fox Cms | 2012-03-12 | 5.0 MEDIUM | N/A |
Arctic Fox CMS 0.9.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by acp/includes/edit.inc.php and certain other files. | |||||
CVE-2011-3706 | 1 Atutor | 1 Atutor | 2012-03-12 | 5.0 MEDIUM | N/A |
ATutor 2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by users/tool_settings.inc.php and certain other files. | |||||
CVE-2011-3707 | 1 Janrain | 1 Php-openid | 2012-03-12 | 5.0 MEDIUM | N/A |
JanRain PHP OpenID library (aka php-openid) 2.2.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by Auth/Yadis/Yadis.php and certain other files. | |||||
CVE-2011-3708 | 1 Automne-cms | 1 Automne | 2012-03-12 | 5.0 MEDIUM | N/A |
Automne 4.0.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by admin/page-redirect-info.php. | |||||
CVE-2011-3709 | 1 B2evolution | 1 B2evolution | 2012-03-12 | 5.0 MEDIUM | N/A |
b2evolution 3.3.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by locales/ru_RU/ru-RU.locale.php and certain other files. | |||||
CVE-2011-3710 | 1 Bbpress | 1 Bbpress | 2012-03-12 | 5.0 MEDIUM | N/A |
bbPress 1.0.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by bb-templates/kakumei/view.php and certain other files. | |||||
CVE-2011-3711 | 1 Bigace | 1 Bigace | 2012-03-12 | 5.0 MEDIUM | N/A |
BIGACE 2.7.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by system/libs/javascript.inc.php and certain other files. | |||||
CVE-2011-3712 | 1 Cakefoundation | 1 Cakephp | 2012-03-12 | 5.0 MEDIUM | N/A |
CakePHP 1.3.7 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by dispatcher.php and certain other files. | |||||
CVE-2011-3714 | 1 Csphere | 1 Clansphere | 2012-03-12 | 5.0 MEDIUM | N/A |
ClanSphere 2010.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by mods/board/attachment.php. | |||||
CVE-2011-3715 | 1 Clantiger | 1 Clantiger | 2012-03-12 | 5.0 MEDIUM | N/A |
ClanTiger 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by widgets/statistics/statistics.php and certain other files. |