5
CVSSv2

CVE-2009-2304

Published: 02/07/2009 Updated: 10/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

index.php in Aardvark Topsites PHP 5.2.0 and previous versions allows remote malicious users to obtain sensitive information via a nonexistent account name in the u parameter in a rate action, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

avatic aardvark topsites php

avatic aardvark topsites php 5.1.2

avatic aardvark topsites php 5.0.3

avatic aardvark topsites php 5

avatic aardvark topsites php 4.2.2

avatic aardvark topsites php 4.1.1

avatic aardvark topsites php 4.0.2