Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-3651 (FaName)

BugsAlert Home > CVE-2007-3651 (FaName)
 
 

class/page.php in Farsi Script (aka FaScript) FaName 1.0 allows remote attackers to obtain sensitive information via a '; (quote semicolon) sequence in the id parameter, which reveals the installation path in an error message.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3651

Learn more about CVE-2007-3651 (FaName)
 
Tags: cve-2007-3651 faname

Related Items

      BAT_BATTEN.A

      Events: January - February

      Debian: New gforge packages fix insecure temporary files

      Gentoo update for blender

      FrSIRT - Ubuntu Security Update Fixes Kernel Security Bypass and DoS Issues

      Fedora Security Update Fixes Autofs Privilege Escalation Vulnerability

      Debian update for clamav

 

Pixel