Webbler CMS prior to 3.1.6 provides the full installation path within HTML comments in certain documents, which allows remote malicious users to obtain sensitive information by viewing the HTML source, as demonstrated by viewing the source generated from index.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tincan webbler cms |