CVE-2005-4389

search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) criteria, (7) advanced, and (8) intern parameters.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:contens:contens:2.5:*:*:*:*:*:*:*
cpe:2.3:a:contens:contens:3.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-12-20 02:03

Updated : 2024-02-04 16:52


NVD link : CVE-2005-4389

Mitre link : CVE-2005-4389

CVE.ORG link : CVE-2005-4389


JSON object : View

Products Affected

contens

  • contens