Security Advisory

CVE-2008-6981

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-08-18 10:00:00
Last updated 2024-08-07 11:49:02
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

index.php in phpAdultSite CMS, possibly 2.3.2, allows remote attackers to obtain the full installation path via an invalid results_per_page parameter, which leaks the path in an error message. NOTE: this issue might be resultant from a separate SQL injection vulnerability.