Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CoolForum 0.8.1 beta and earlier allows remote attackers to obtain sensitive path information via direct requests to (1) entete.php, (2) profile_accueil.php, (3) profile_mdp.php, (4) profile_notify.php, (5) profile_options.php, (6) profile_perso.php, (7) profile_pm.php, or (8) readannonce.php, which leaks the full pathname in a PHP error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CoolForum 0.8.1 beta漏洞
Vulnerability Description
CoolForum 0.8.1 beta以及较早的版本,允许远程攻击者通过对(1)entete.php,(2)profile_accueil.php,(3)profile_mdp.php,(4)profile_notify.php,(5)profile_options.php,(6)profile_perso.php,(7)profile_pm.php或(8)readannonce.php的直接请求来获取敏感的路径信息,从而在PHP出错信息中透露完整的路径名。
CVSS Information
N/A
Vulnerability Type
N/A