CVE

Id
41191  
CVE No.
CVE-2009-3756  
Status
Candidate  
Description
phpBMS 0.96 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php, (2) header.php, (3) the show action in advancedsearch.php, and (4) choicelist.php, which reveals the installation path in an error message.  
Phase
Assigned (20091022)  
Votes
None (candidate not yet proposed)  
Comments