Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2011-3803 | 1 Sugarcrm | 1 Sugarcrm | 2012-05-20 | 5.0 MEDIUM | N/A |
SugarCRM 6.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/Sugar5/layout_utils.php and certain other files. | |||||
CVE-2011-3804 | 1 Basic-cms | 1 Sweetrice | 2012-05-20 | 5.0 MEDIUM | N/A |
SweetRice 0.7.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by _plugin/tiny_mce/plugins/advimage/images.php. | |||||
CVE-2011-3805 | 1 Taskfreak | 1 Taskfreak\! Multi-mysql | 2012-05-20 | 5.0 MEDIUM | N/A |
TaskFreak! multi-mysql-0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by include/language/zh/register_info.php and certain other files. | |||||
CVE-2011-3806 | 1 Tecnick | 1 Tcexam | 2012-05-20 | 5.0 MEDIUM | N/A |
TCExam 11.1.015 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by public/code/tce_page_footer.php and certain other files. | |||||
CVE-2011-3807 | 1 Textpattern | 1 Textpattern | 2012-05-20 | 5.0 MEDIUM | N/A |
Textpattern 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by lib/txplib_db.php and certain other files. | |||||
CVE-2011-3808 | 1 Thebuggenie | 1 The Bug Genie | 2012-05-20 | 5.0 MEDIUM | N/A |
The Bug Genie 2.1.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/svn_integration/config.inc.php and certain other files. | |||||
CVE-2011-3809 | 1 Thehostingtool | 1 Thehostingtool | 2012-05-20 | 5.0 MEDIUM | N/A |
TheHostingTool (THT) 1.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/pear/Mail/smtp.php and certain other files. | |||||
CVE-2011-3810 | 1 Tinywebgallery | 1 Tinywebgallery | 2012-05-20 | 5.0 MEDIUM | N/A |
TinyWebGallery (TWG) 1.8.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by i_frames/i_register.php. | |||||
CVE-2011-3811 | 1 Tomatocart | 1 Tomatocart | 2012-05-20 | 5.0 MEDIUM | N/A |
TomatoCart 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/system/offline.php and certain other files. | |||||
CVE-2011-3812 | 1 Vanillaforums | 1 Vanilla | 2012-05-20 | 5.0 MEDIUM | N/A |
Vanilla 2.0.16 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by plugins/Minify/min/utils.php and certain other files. | |||||
CVE-2011-3813 | 1 Vwar | 1 Virtual War | 2012-05-20 | 5.0 MEDIUM | N/A |
Virtual War (aka VWar) 1.5.0r15 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/language/dutch.inc.php and certain other files. | |||||
CVE-2011-3815 | 1 Webidsupport | 1 Webid | 2012-05-20 | 5.0 MEDIUM | N/A |
WeBid 1.0.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by js/calendar.php and certain other files. | |||||
CVE-2011-3816 | 1 Webinsta | 1 Mailing List Manager | 2012-05-20 | 5.0 MEDIUM | N/A |
WEBinsta mailing list manager 1.3e allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by install/install3.php and certain other files. | |||||
CVE-2011-3817 | 1 Websitebaker2 | 1 Website Baker | 2012-05-20 | 5.0 MEDIUM | N/A |
Website Baker 2.8.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by admin/media/parameters.php and certain other files. NOTE: this might overlap CVE-2005-2436. | |||||
CVE-2011-3818 | 1 Wordpress | 1 Wordpress | 2012-05-20 | 5.0 MEDIUM | N/A |
WordPress 2.9.2 and 3.0.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by wp-admin/includes/user.php and certain other files. | |||||
CVE-2011-3819 | 1 53x11 | 1 Wow Server Status | 2012-05-20 | 5.0 MEDIUM | N/A |
WoW Server Status 4.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by status.php and certain other files. | |||||
CVE-2011-3820 | 1 Webmastersite | 1 Wsn Software | 2012-05-20 | 5.0 MEDIUM | N/A |
WSN Software 6.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/prestart.php and certain other files. | |||||
CVE-2011-3821 | 1 Xajax-project | 1 Xajax | 2012-05-20 | 5.0 MEDIUM | N/A |
xajax 0.6 beta1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by xajax_core/plugin_layer/xajaxScriptPlugin.inc.php and certain other files. | |||||
CVE-2011-3822 | 1 Xoops | 1 Xoops | 2012-05-20 | 5.0 MEDIUM | N/A |
XOOPS 2.5.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/system/xoops_version.php and certain other files. | |||||
CVE-2011-3823 | 1 Yamamah | 1 Yamamah | 2012-05-20 | 5.0 MEDIUM | N/A |
Yamamah 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/default/index.php and certain other files. |