CVE-2006-5759

index.php in Rhadrix If-CMS, possibly 1.01 and 2.07, allows remote attackers to obtain the full path of the web server via empty (1) rns[] or (2) pag[] arguments, which reveals the path in an error message.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rhadrix:if-cms:1.01:*:*:*:*:*:*:*
cpe:2.3:a:rhadrix:if-cms:2.07:*:*:*:*:*:*:*

History

14 Feb 2024, 01:17

Type Values Removed Values Added
References (MISC) http://s-a-p.ca/index.php?page=OurAdvisories&id=5 - Exploit (MISC) http://s-a-p.ca/index.php?page=OurAdvisories&id=5 - Exploit, URL Repurposed

Information

Published : 2006-11-06 22:07

Updated : 2024-02-28 11:01


NVD link : CVE-2006-5759

Mitre link : CVE-2006-5759

CVE.ORG link : CVE-2006-5759


JSON object : View

Products Affected

rhadrix

  • if-cms