index.php in phpAdultSite CMS, possibly 2.3.2, allows remote attackers to obtain the full installation path via an invalid results_per_page parameter, which leaks the path in an error message. NOTE: this issue might be resultant from a separate SQL injection vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-08-18T10:00:00
Updated: 2024-08-07T11:49:02.618Z
Reserved: 2009-08-17T00:00:00
Link: CVE-2008-6981
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-08-19T05:24:52.343
Modified: 2018-10-11T20:57:55.283
Link: CVE-2008-6981
Redhat
No data.