PEEL, possibly 3.x and earlier, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/5281 | exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/41494 | vdb entry |
http://realn.free.fr/releases/70207 | exploit |