MEDIUM
WEB//NEWS 1.4 allows remote attackers to obtain sensitive information via a direct request to files in the actions directory, which reveal the path in an error message, as demonstrated using cat.add.php
Published Sep 14, 2005
5.0
MEDIUMCVSS 2.0
EPSS 1.18%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.