PT-2007-3408 · Usebb · Usebb

Jesper Jurcenoks

·

Publicado

2007-04-18

·

Atualizado

2008-09-05

·

CVE-2007-2066

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions UseBB versions prior to 1.0.6
Description The issue allows remote attackers to obtain sensitive information by sending a request with unspecified GET or POST parameters to an unspecified script. This request reveals the path in an error message, potentially exposing sensitive information.
Recommendations For versions prior to 1.0.6, update to version 1.0.6 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2066

Produtos afetados

Usebb