5

CVE-2006-3104

Exploit
users/index.php in Bitweaver 1.3 allows remote attackers to obtain sensitive information via an invalid sort_mode parameter, which reveals the installation path and database information in the resultant error message.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bitweaver ≫ Bitweaver Version 1.3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.87% 0.946
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://retrogod.altervista.org/bitweaver_13_xpl.html
Exploit
http://secunia.com/advisories/20695
Vendor Advisory
Exploit
http://securityreason.com/securityalert/1115
http://sourceforge.net/project/shownotes.php?release_id=336854&group_id=141358
http://www.bitweaver.org/articles/45
http://www.securityfocus.com/archive/1/437491/100/0/threaded
http://www.vupen.com/english/advisories/2006/2405
http://www.osvdb.org/26589
https://exchange.xforce.ibmcloud.com/vulnerabilities/27214