Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-0327
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0327

Description:
TYPO3 3.7.1 allows remote attackers to obtain sensitive information via a direct request to (1) thumbs.php, (2) showpic.php, or (3) tables.php, which causes them to incorrectly define a variable and reveal the path in an error message when a require function call fails.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/24244

SREASON
  http://securityreason.com/securityalert/361

SAID
  Secunia Advisory: SA18546

OSVDB
  22666
  22665
  22667

MISC
  http://bugs.typo3.org/view.php?id=2248
  http://www.irmplc.com/advisory015.htm

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/422390/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/422360/100/0/threaded


Return to the previous page.