CVE-2012-4257

Publication date

2012-08-13 18:00:00

Family

mitre

State

PUBLISHED

Description

Yaqas (Yet Another Question & Answer System) 1.0 Alpha 1 allows remote attackers to obtain sensitive information via an invalid character in the PHPSESSID, which reveals the installation path in an error message.