PT-2002-2145 · Invision · Invision Board
Publicado
2002-10-01
·
Atualizado
2016-10-18
·
CVE-2002-1149
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Invision Board (affected versions not specified)
Description:
The issue concerns the installation procedure of Invision Board, which recommends installing the phpinfo.php program under the web root. This installation setup can lead to the exposure of sensitive information, including absolute pathnames, operating system details, and PHP configuration settings.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Invision Board