5
CVSSv2

CVE-2007-5128

Published: 27/09/2007 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

SimpNews 2.41.03 on Windows, when PHP prior to 5.0.0 is used, allows remote malicious users to obtain sensitive information via an certain link_date parameter to events.php, which reveals the path in an error message due to an unsupported argument type for the mktime function on Windows.

Vulnerable Product Search on Vulmon Subscribe to Product

boesch-it simpnews 2.41.03

php php