9 lines
No EOL
603 B
Text
9 lines
No EOL
603 B
Text
source: https://www.securityfocus.com/bid/6406/info
|
|
|
|
Multiple path disclosure vulnerabilities have been discovered in PHP-Nuke. This issue occurs when requesting a PHP script that shouldn't be accessed directly.
|
|
|
|
Exploiting this issue will cause the target server to disclose sensitive information about the layout of the filesystem of the host running the vulnerable software. Information of this nature may aid in mounting further attacks against the host.
|
|
|
|
http://[target]/modules/Downloads/voteinclude.php
|
|
http://[target]/modules/Your_Account/navbar.php
|
|
http://[target]/modules/Forums/attachment.php |