CVE-2011-2891
CVE-2011-2891
Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installation path in an error message, a different vulnerability than CVE-2011-2488.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://bl0g.yehg.net/2011/04/joomla-161-and-lower-information.htmlhttp://developer.joomla.org/security/news/341-20110402-core-information-disclosure.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/68881http://www.openwall.com/lists/oss-security/2011/06/27/6http://www.openwall.com/lists/oss-security/2011/06/27/8