Total
8075 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2011-3772 | 1 Php-collab | 1 Phpcollab | 2012-05-31 | 5.0 MEDIUM | N/A |
phpCollab 2.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by topics/noti_newtopic.php and certain other files. | |||||
CVE-2011-4232 | 1 Cisco | 1 Unified Meetingplace | 2012-05-30 | 5.0 MEDIUM | N/A |
The web server in Cisco Unified MeetingPlace 6.1 and 8.5 produces different responses for directory queries depending on whether the directory exists, which allows remote attackers to enumerate directory names via a series of queries, aka Bug ID CSCtt94070. | |||||
CVE-2011-3811 | 1 Tomatocart | 1 Tomatocart | 2012-05-21 | 5.0 MEDIUM | N/A |
TomatoCart 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/system/offline.php and certain other files. | |||||
CVE-2011-3819 | 1 53x11 | 1 Wow Server Status | 2012-05-21 | 5.0 MEDIUM | N/A |
WoW Server Status 4.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by status.php and certain other files. | |||||
CVE-2011-3795 | 1 Betella | 1 Podcast Generator | 2012-05-21 | 5.0 MEDIUM | N/A |
Podcast Generator 1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by core/themes.php and certain other files. | |||||
CVE-2011-3801 | 1 Simpletest | 1 Simpletest | 2012-05-21 | 5.0 MEDIUM | N/A |
SimpleTest 1.0.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by test/visual_test.php and certain other files. | |||||
CVE-2011-3794 | 1 Pligg | 1 Pligg Cms | 2012-05-21 | 5.0 MEDIUM | N/A |
Pligg CMS 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by widgets/statistics/init.php and certain other files. | |||||
CVE-2011-3804 | 1 Basic-cms | 1 Sweetrice | 2012-05-21 | 5.0 MEDIUM | N/A |
SweetRice 0.7.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by _plugin/tiny_mce/plugins/advimage/images.php. | |||||
CVE-2011-3816 | 1 Webinsta | 1 Mailing List Manager | 2012-05-21 | 5.0 MEDIUM | N/A |
WEBinsta mailing list manager 1.3e allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by install/install3.php and certain other files. | |||||
CVE-2011-3788 | 1 Phpsec | 1 Phpsecinfo | 2012-05-21 | 5.0 MEDIUM | N/A |
PhpSecInfo 0.2.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by Test/Test_Suhosin.php and certain other files. | |||||
CVE-2011-3780 | 1 Phpicalendar | 1 Php Icalendar | 2012-05-21 | 5.0 MEDIUM | N/A |
PHP iCalendar 2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by rss/rss_common.php and certain other files. | |||||
CVE-2011-3792 | 1 Pixelpost | 1 Pixelpost | 2012-05-21 | 5.0 MEDIUM | N/A |
Pixelpost 1.7.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/functions_feeds.php and certain other files. | |||||
CVE-2011-3787 | 1 Nick Korbel | 1 Phpscheduleit | 2012-05-21 | 5.0 MEDIUM | N/A |
phpScheduleIt 1.2.12 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/schedule.template.php and certain other files. | |||||
CVE-2011-3807 | 1 Textpattern | 1 Textpattern | 2012-05-21 | 5.0 MEDIUM | N/A |
Textpattern 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by lib/txplib_db.php and certain other files. | |||||
CVE-2011-3797 | 1 Projectpier | 1 Projectpier | 2012-05-21 | 5.0 MEDIUM | N/A |
ProjectPier 0.8.0.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by public/upgrade/templates/layout.php and certain other files. | |||||
CVE-2011-3824 | 1 Yourls | 1 Yourls | 2012-05-21 | 5.0 MEDIUM | N/A |
Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/auth.php and certain other files. | |||||
CVE-2011-3815 | 1 Webidsupport | 1 Webid | 2012-05-21 | 5.0 MEDIUM | N/A |
WeBid 1.0.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by js/calendar.php and certain other files. | |||||
CVE-2011-3826 | 1 Zikula | 1 Zikula | 2012-05-21 | 5.0 MEDIUM | N/A |
Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/voodoodolly/version.php and certain other files. | |||||
CVE-2011-3786 | 1 Phprojekt | 1 Phprojekt | 2012-05-21 | 5.0 MEDIUM | N/A |
PHProjekt 6.0.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by Setup/Controllers/IndexController.php. | |||||
CVE-2011-3796 | 1 Prestashop | 1 Prestashop | 2012-05-21 | 5.0 MEDIUM | N/A |
PrestaShop 1.4.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by product-sort.php and certain other files. |