5

CVE-2006-2096

plug.php in Land Down Under (LDU) 802 and earlier allows remote attackers to obtain sensitive information via an invalid (1) month or (2) year parameter, which reveals the path in an error message.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Neocrome ≫ Land Down Under Version <= 802
Neocrome ≫ Land Down Under Version 601
Neocrome ≫ Land Down Under Version 602
Neocrome ≫ Land Down Under Version 700.01
Neocrome ≫ Land Down Under Version 700.02
Neocrome ≫ Land Down Under Version 700.03
Neocrome ≫ Land Down Under Version 700.04
Neocrome ≫ Land Down Under Version 700.05
Neocrome ≫ Land Down Under Version 701
Neocrome ≫ Land Down Under Version 800
Neocrome ≫ Land Down Under Version 801
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.38% 0.685
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securityreason.com/securityalert/814
http://www.securityfocus.com/archive/1/432235/100/0/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/26143