PHPOutsourcing Zorum 3.4 - Full Path Disclosure

Related Vulnerabilities: CVE-2003-1089  
Publish Date: 11 Aug 2003
                source: http://www.securityfocus.com/bid/8396/info

A vulnerability has been reported in Zorum message board software that allows a remote attacker to send a malformed HTTP request resulting in a disclosure of the installation path.

This issue may allow an attacker to gain knowledge of the file system in order to mount further attacks against the host.

http://www.example.com/forum/index.php?method=userfunctions&'list=secmenu&