HIGH
An unspecified script in EVA-Web 2.1.2 and earlier, probably index.php, allows remote attackers to obtain the full path of the web server via invalid (1) perso or (2) aide parameters
Published May 31, 2006
7.8
HIGHCVSS 2.0
EPSS 1.50%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.