Description
class/page.php in Farsi Script (aka FaScript) FaName 1.0 allows remote attackers to obtain sensitive information via a '; (quote semicolon) sequence in the id parameter, which reveals the installation path in an error message.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-3635 | class/page.php in Farsi Script (aka FaScript) FaName 1.0 allows remote attackers to obtain sensitive information via a '; (quote semicolon) sequence in the id parameter, which reveals the installation path in an error message. |
References
History
Thu, 03 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-03T14:41:43.313Z
Reserved: 2007-07-10T00:00:00.000Z
Link: CVE-2007-3651
Updated: 2024-08-07T14:21:36.534Z
Status : Deferred
Published: 2008-07-09T00:41:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-3651
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD