MEDIUM
modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to obtain sensitive information via a request with an arbitrary catname parameter but no itemsdb parameter, which reveals the path in an error message
Published Dec 26, 2006
5.0
MEDIUMCVSS 2.0
EPSS 1.65%
Description
Affected products
Remediation
References (4)
Change history (0)
No recorded changes yet.