CVE-2008-2864

Publication date

2008-06-25 10:00:00

Family

mitre

State

PUBLISHED

Description

eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.