5
CVSSv2

CVE-2009-0678

Published: 22/02/2009 Updated: 10/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

images/captcha.php in RavenNuke 2.30 allows remote malicious users to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

ravenphpscripts ravennuke 2.30

Exploits

[waraxe-2009-SA#072] - Multiple Vulnerabilities in RavenNuke 230 =============================================================================== Author: Janek Vind "waraxe" Date: 16 February 2009 Location: Estonia, Tartu Web: wwwwaraxeus/advisory-72html Description of vulnerable software: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ...