CVE-2005-4149 Information

Description

Lyris ListManager 8.8 through 8.9b allows remote attackers to obtain sensitive information by causing errors in TML scripts such as via direct requests which leaks the installation path SQL queries or product code in diagnostic messages.

Reference

http://archives.neohapsis.com/archives/fulldisclosure/2005-12/0349.html http://metasploit.com/research/vulns/lyris_listmanager/ http://secunia.com/advisories/17943 http://www.securityfocus.com/archive/1/419077/100/0/threaded http://www.vupen.com/english/advisories/2005/2820

Share on: