File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2013/02/01/4 | third party advisory mailing list |
http://www.openwall.com/lists/oss-security/2013/01/17/5 | third party advisory mailing list |
http://www.openwall.com/lists/oss-security/2013/01/31/1 | third party advisory mailing list |