csFAQ.cgi in csFAQ allows remote attackers to gain sensitive information via an invalid database parameter, which reveals the path to the web server in an error message.
Link | Tags |
---|---|
http://www.swp-zone.org/archivos/advisory-08.txt | |
http://marc.info/?l=bugtraq&m=108844203121238&w=2 | mailing list |
http://www.securityfocus.com/bid/10618 | exploit vdb entry vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16526 | vdb entry |