CVE-2004-1974

paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php, (4) main.php, (5) viewall.php, (6) download.php, (7) email.php, (8) file.php, (9) rate.php, or (10) stats.php, which reveals the path in an error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:php_arena:pafiledb:3.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=108311096022485&w=2 - () http://marc.info/?l=bugtraq&m=108311096022485&w=2 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/15990 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/15990 -

Information

Published : 2004-04-27 04:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-1974

Mitre link : CVE-2004-1974

CVE.ORG link : CVE-2004-1974


JSON object : View

Products Affected

php_arena

  • pafiledb