5
CVE-2005-2325
- EPSS 1.85%
- Veröffentlicht 19.07.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:14:41
- Erkennungen
Clever Copy 2.0 and 2.0a allows remote attackers to obtain the full path of the web root via a direct request to (1) ticker.php, (2) menu.php, (3) banned.php, (4) endlayout.php, (5) randomhlinesblock.php, (6) showlast.php, (7) showlast5class1.php, (8) showlast5phorum.php, (9) showlast5phorumblock.php, (10) showlastforumbb2.php, or (11) showlastforumbb2block.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Clever Copy ≫ Clever Copy Version 2.0
Clever Copy ≫ Clever Copy Version 2.0a
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.85% | 0.763 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://lostmon.blogspot.com/2005/07/clever-copy-path-disclosure-and-xss.html