5
CVSSv2

CVE-2012-6515

Published: 24/01/2013 Updated: 29/01/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

eFront 3.6.10, 3.6.11 build 15059, and previous versions allows remote malicious users to obtain sensitive information via invalid courses_ID parameter in the lesson_info module to index.php, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

efrontlearning efront 3.6.11

efrontlearning efront 3.6.10