Security Advisory

CVE-2004-1953

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-05-10 04:00:00
Last updated 2024-08-08 01:07:49
Assigner mitre
State PUBLISHED

Description

phProfession 2.5 allows remote attackers to gain sensitive information via a direct HTTP request to upload.php, which reveals the path in a PHP error message.