PT-2005-3836 · Php · Php Advanced Transfer Manager

Publicado

2005-09-20

·

Atualizado

2008-09-05

·

CVE-2005-2999

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions PHP Advanced Transfer Manager version 1.30
Description The issue allows remote attackers to obtain sensitive PHP configuration information. This is achieved by making a direct request to the "test.php" endpoint.
Recommendations For PHP Advanced Transfer Manager version 1.30, consider restricting access to the "test.php" endpoint to prevent unauthorized disclosure of sensitive information.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-2999

Produtos afetados

Php Advanced Transfer Manager