Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Web_Links module in PHP-Nuke 6.0 through 6.5 final allows remote attackers to obtain the full web server path via an invalid cid parameter that is non-numeric or null, which leaks the pathname in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Nuke Web_Links模块路径泄露漏洞
Vulnerability Description
PHP-Nuke 6.0版本到6.5终极版本的Web_Links模块存在漏洞。远程攻击者可以借助无效非数字或空的cid参数来获得完整的web服务器路径,该漏洞在出错消息中泄露了路径名。
CVSS Information
N/A
Vulnerability Type
N/A