Markus Triska CGINews and CGIForum...

- AV AC AU C I A
发布: 2003-12-15
修订: 2025-04-13

It has been reported that CGINews and CGIForum may be prone to an information disclosure vulnerability that may allow an attacker to gain access to sensitive information such as usernames and e-mail addresses. The problem exists because the log files 'username.log' are viewable by any user. CGINews versions 1.07 and CGIForum 1.09 are reported to be vulnerable to this issue, however other versions could be affected as well.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息