5
CVSSv2

CVE-2009-2134

Published: 19/06/2009 Updated: 10/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

pivot/tb.php in Pivot 1.40.4 and 1.40.7 allows remote malicious users to obtain sensitive information via an invalid url parameter, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

pivot pivot 1.40.7

pivot pivot 1.40.4

Exploits

Pivot - XSS and HTML Injection Vulnerabilities Versions Affected: 1404 and 1407 (22nd March 2009) (newest) Info: Pivot is a web-based tool to help you maintain dynamic sites, like weblogs or online journals Pivot is released under the GPL so it is completely free to use It is written in PHP, and does not require additional libraries or data ...