Security Advisory

CVE-2005-0655

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-03-07 05:00:00
Last updated 2024-08-07 21:21:06
Assigner mitre
State PUBLISHED

Description

auraCMS 1.5 allows remote attackers to obtain sensitive information via an HTTP request with an invalid id parameter to (1) teman.php, (2) hal.php, or (3) arsip.php, which reveals the path in a PHP error message.