Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6660 (2z Project)

BugsAlert Home > CVE-2007-6660 (2z Project)
 
 

2z project 0.9.6.1 allows remote attackers to obtain sensitive information via (1) a request to index.php with an invalid template or (2) a request to the default URI with certain year and month parameters, which reveals the path in various error messages.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6660

Learn more about CVE-2007-6660 (2z Project)
 
Tags: cve-2007-6660 project

Related Items

      Mozilla Thunderbird Code Injection and Memory Corruption Vulnerabilities

      FrSIRT - VMware Products Shared Folders Feature Directory Traversal Issue

      CVE-2008-1502 (eGroupWare)

      CVE-2008-4106 (wordpress)

      OpenElec "obj" File Inclusion Vulnerability

      Phishers use DNS Tricks to Direct Users to Bad Sites

      FrSIRT - OpenSSH "X11UseLocalhost" X11 Forwarding Session Hijacking Issue

 

Pixel