Security Advisory

CVE-2006-3937

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-07-31 22:00:00
Last updated 2024-08-07 18:48:39
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

post.php in x_atrix xGuestBook 1.02 allows remote attackers to obtain sensitive information via a request without the (1) user, (2) mail, (3) p, or (4) url parameter, which reveals the installation path in an error message.