CVE-2004-0729 Information

Description

PhpBB 2.0.8 allows remote attackers to gain sensitive information via an invalid (1) category_rows parameter to index.php (2) faq parameter to faq.php or (3) ranksrow parameter to profile.php which reveal the full path in an error message.

Reference

http://marc.info/?l=bugtraq&m=108999024506020&w=2 http://www.waraxe.us/index.php?modname=sa&id=34 https://exchange.xforce.ibmcloud.com/vulnerabilities/16716 https://exchange.xforce.ibmcloud.com/vulnerabilities/16720 https://exchange.xforce.ibmcloud.com/vulnerabilities/16723

Share on: