The Event Calendar module 2.13 for PHP-Nuke allows remote attackers to gain sensitive information via an HTTP request to (1) config.php, (2) index.php, or (3) submit.php, which reveal the full path in an error message.
References
Configurations
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2024-02-28 10:24
NVD link : CVE-2004-1528
Mitre link : CVE-2004-1528
CVE.ORG link : CVE-2004-1528
JSON object : View
Products Affected
rob_sutton
- php-nuke_event_calendar
CWE