CVE-2004-1974

paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php, (4) main.php, (5) viewall.php, (6) download.php, (7) email.php, (8) file.php, (9) rate.php, or (10) stats.php, which reveals the path in an error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:php_arena:pafiledb:3.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-04-27 04:00

Updated : 2024-02-28 10:24


NVD link : CVE-2004-1974

Mitre link : CVE-2004-1974

CVE.ORG link : CVE-2004-1974


JSON object : View

Products Affected

php_arena

  • pafiledb