CVE-2005-0326

pafiledb.php in PaFileDB 3.1 allows remote attackers to gain sensitive information via an invalid or missing action parameter, which reveals the path in an error message when it cannot include a login.php script.
Configurations

Configuration 1 (hide)

cpe:2.3:a:php_arena:pafiledb:3.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:54

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=110720365923818&w=2 - () http://marc.info/?l=bugtraq&m=110720365923818&w=2 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/19175 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/19175 -

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:54


NVD link : CVE-2005-0326

Mitre link : CVE-2005-0326

CVE.ORG link : CVE-2005-0326


JSON object : View

Products Affected

php_arena

  • pafiledb