5

CVE-2004-2671

Exploit
mod.php in eNdonesia 8.3 allows remote attackers to obtain sensitive information via certain direct requests, and certain requests with invalid parameter values, which reveal the path in various error messages, as demonstrated by the (1) mod and (2) cid parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
EndonesiaEndonesia Version8.3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.57% 0.721
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/8507
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/13042
http://echo.or.id/adv/adv02-y3dips-2004.txt
Vendor Advisory
Exploit
http://secunia.com/advisories/12231
Vendor Advisory
http://securitytracker.com/id?1010864
Vendor Advisory
http://www.securityfocus.com/archive/1/370855
Vendor Advisory
Exploit