CVE-2004-1953

phProfession 2.5 allows remote attackers to gain sensitive information via a direct HTTP request to upload.php, which reveals the path in a PHP error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phprofession:phprofession:2.5:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-12-31 05:00

Updated : 2024-02-04 16:31


NVD link : CVE-2004-1953

Mitre link : CVE-2004-1953

CVE.ORG link : CVE-2004-1953


JSON object : View

Products Affected

phprofession

  • phprofession