PT-2003-1403 · Mozilla · Bonsai Mozilla Cvs Query Tool
Stan Bubrouski
·
Published
2003-03-26
·
Updated
2017-07-11
·
CVE-2003-0153
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
bonsai Mozilla CVS query tool (affected versions not specified)
Description:
The bonsai Mozilla CVS query tool has an issue where it leaks the absolute pathname of the tool in certain error messages. This occurs in error messages generated by cvslog.cgi, cvsview2.cgi, or multidiff.cgi.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bonsai Mozilla Cvs Query Tool