It has been reported that ARSC Really Simple Chat discloses path information. A request for a non-existent page, could result in an error page containing the absolute path to the web root on the host running the vulnerable software. This information may aid in further attacks against the host running the vulnerable software.
It has been reported that ARSC Really Simple Chat discloses path information. A request for a non-existent page, could result in an error page containing the absolute path to the web root on the host running the vulnerable software. This information may aid in further attacks against the host running the vulnerable software.