5
CVSSv2

CVE-2004-1830

Published: 18/03/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

error.php in Error Manager 2.1 for PHP-Nuke 6.0 allows remote malicious users to obtain sensitive information via an invalid (1) language, (2) newlang, or (3) lang parameter, which leaks the pathname in a PHP error message.

Vulnerable Product Search on Vulmon Subscribe to Product

francisco burzi php-nuke 6.0

Exploits

source: wwwsecurityfocuscom/bid/9911/info It has been reported that Error Manager is prone to multiple vulnerabilities These issues are due to failure to validate user input, failure to handle exceptional conditions and simple design errors These issues may be leveraged to carry out cross-site scripting attacks, reveal information abou ...