Lucene search

K
nvd[email protected]NVD:CVE-2008-1717
HistoryApr 09, 2008 - 9:05 p.m.

CVE-2008-1717

2008-04-0921:05:00
CWE-200
web.nvd.nist.gov

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.008

Percentile

81.4%

WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to obtain the full path via invalid (1) page and (2) form parameters, which leaks the path from an exception handler when a valid class cannot be found.

Affected configurations

Nvd
Node
woltlabburning_boardMatch3.0.5
VendorProductVersionCPE
woltlabburning_board3.0.5cpe:2.3:a:woltlab:burning_board:3.0.5:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.008

Percentile

81.4%

Related for NVD:CVE-2008-1717