tr1.php in Yourfreeworld Stylish Text Ads Script allows remote attackers to obtain the installation path via an invalid id parameter, which leaks the path in an error message. NOTE: this issue might be resultant from CVE-2006-2508.
References
Configurations
History
21 Nov 2024, 00:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2006-05/0381.html - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26571 - |
Information
Published : 2006-12-11 17:28
Updated : 2025-04-09 00:30
NVD link : CVE-2006-6461
Mitre link : CVE-2006-6461
CVE.ORG link : CVE-2006-6461
JSON object : View
Products Affected
yourfreeworld
- stylish_text_ads_script
CWE