CVE

Id
9654  
CVE No.
CVE-2004-1226  
Status
Candidate  
Description
SugarCRM Sugar Sales 2.0.1c and earlier allows remote attackers to gain sensitive information via certain requests to scripts that contain invalid input, which reveals the path in an error message, as demonstrated using phprint.php with an empty module parameter.  
Phase
Assigned (20041214)  
Votes
None (candidate not yet proposed)  
Comments