Lucene search

K
cveMitreCVE-2008-1717
HistoryApr 09, 2008 - 9:05 p.m.

CVE-2008-1717

2008-04-0921:05:00
CWE-200
mitre
web.nvd.nist.gov
16
woltlab
wcf
burning board
cve-2008-1717
remote attackers
path disclosure
security vulnerability

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.008

Percentile

81.4%

WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to obtain the full path via invalid (1) page and (2) form parameters, which leaks the path from an exception handler when a valid class cannot be found.

Affected configurations

Nvd
Node
woltlabburning_boardMatch3.0.5
VendorProductVersionCPE
woltlabburning_board3.0.5cpe:2.3:a:woltlab:burning_board:3.0.5:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.008

Percentile

81.4%

Related for CVE-2008-1717