CVE

Id
10151  
CVE No.
CVE-2004-1723  
Status
Candidate  
Description
The (1) updateuser.php and (2) forums_prune.php scripts in PHP-Fusion 4.00 allow remote attackers to obtain sensitive information via a direct HTTP request, which reveals the installation path in an error message.  
Phase
Assigned (20050226)  
Votes
None (candidate not yet proposed)  
Comments