CVE-2008-1717
CVE-2008-1717
WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to obtain the full path via invalid (1) page and (2) form parameters, which leaks the path from an exception handler when a valid class cannot be found.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://archives.neohapsis.com/archives/fulldisclosure/2008-04/0161.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2008-April/061271.htmlhttp://secunia.com/advisories/29719https://exchange.xforce.ibmcloud.com/vulnerabilities/41713http://www.securityfocus.com/archive/1/490560/100/0/threadedhttp://www.securityfocus.com/archive/1/490782/100/0/threadedhttp://www.securityfocus.com/bid/28678