PT-2004-2856 · Unknown · Protector System
Janek Vind
+1
·
Published
2004-04-23
·
Updated
2017-07-11
·
CVE-2004-1959
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Protector System version 1.15b1
Description
The issue allows remote attackers to gain sensitive information via a string in the
portNum parameter, which reveals the full path in an error message.Recommendations
For Protector System version 1.15b1, consider restricting access to the
blocker query.php file until a patch is available, or avoid using the portNum parameter in the affected API endpoint to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Protector System