move_uploaded_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.kb.cert.org/vuls/id/576355 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-01-29T02:00:00Z
Updated: 2024-09-17T02:07:11.033Z
Reserved: 2012-01-28T00:00:00Z
Link: CVE-2011-5067
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-01-29T04:04:44.640
Modified: 2024-11-21T01:33:33.173
Link: CVE-2011-5067
Redhat
No data.