5
CVSSv2

CVE-2003-1555

Published: 31/12/2003 Updated: 19/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

ScozNet ScozBook 1.1 BETA allows remote malicious users to obtain sensitive information via an invalid PG parameter in view.php, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

scoznet scozbook 1.1_beta

Exploits

source: wwwsecurityfocuscom/bid/7236/info A path disclosure vulnerability has been reported for ScozBook The issue occurs when a request is made to the viewphp script page Access to sensitive filesystem information may aid an attacker in launching further attacks against a target system hostname/scozbook/viewphp?PG=test ...