5
CVSSv2

CVE-2003-1535

Published: 31/12/2003 Updated: 19/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Justice Guestbook 1.3 allows remote malicious users to obtain the full installation path via a direct request to cfooter.php3, which leaks the path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

justice media guestbook 1.3

Exploits

source: wwwsecurityfocuscom/bid/7234/info A path disclosure vulnerability has been reported for Guestbook The issue occurs when a request is made to the cfooterphp3 PHP script page Access to sensitive filesystem information may aid an attacker in launching further attacks against a target system hostname/jgb_eng_php3/cfooterp ...