6.1 Medium
AI Score
Confidence
Low
0.006 Low
EPSS
Percentile
78.9%
view.php in YaPiG 0.92b, 0.93u and 0.94u allows remote attackers to obtain sensitive information via a phid parameter that is not an integer, which reveals the path in an error message.
secunia.com/advisories/15600/
securitytracker.com/id?1014103
secwatch.org/advisories/secwatch/20050530_yapig.txt
www.osvdb.org/17119