MAXdev MD-Pro 1.0.73, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to (1) wiki.php, (2) AutoTheme directory, (3) Blocks directory, (4) admin.php, (5) pnadmin.php, or (6) Topics directory, which reveal the path in an error message.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-09-14T04:00:00

Updated: 2024-08-07T22:53:29.436Z

Reserved: 2005-09-14T00:00:00

Link: CVE-2005-2887

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-09-14T20:03:00.000

Modified: 2017-07-11T01:33:01.877

Link: CVE-2005-2887

cve-icon Redhat

No data.