MEDIUM
phpGedView before 2.65 allows remote attackers to obtain the absolute path of the web server via malformed parameters to (1) indilist.php, (2) famlist.php, (3) placelist.php, (4) imageview.php, (5) timeline.php, (6) clippings.php, (7) login.php, and (8) gdbi.php
Published Jan 15, 2004
5.0
MEDIUMCVSS 2.0
EPSS 1.41%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.