Lucene search

K
cveMitreCVE-2004-1203
HistoryJan 10, 2005 - 5:00 a.m.

CVE-2004-1203

2005-01-1005:00:00
mitre
web.nvd.nist.gov
22
phpcms
vulnerability
parser.php
information disclosure
cve-2004-1203

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.008

Percentile

81.7%

parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers to gain sensitive information via an invalid file parameter, which reveals the web server’s installation path.

Affected configurations

Nvd
Node
phpcmsphpcmsMatch1.1.9
OR
phpcmsphpcmsMatch1.2.0
OR
phpcmsphpcmsMatch1.2.1
VendorProductVersionCPE
phpcmsphpcms1.1.9cpe:2.3:a:phpcms:phpcms:1.1.9:*:*:*:*:*:*:*
phpcmsphpcms1.2.0cpe:2.3:a:phpcms:phpcms:1.2.0:*:*:*:*:*:*:*
phpcmsphpcms1.2.1cpe:2.3:a:phpcms:phpcms:1.2.1:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.008

Percentile

81.7%

Related for CVE-2004-1203