pdesk.cgi in PerlDesk allows remote attackers to gain sensitive information via an invalid lang parameter, which includes pathname information in an error message.
References
| Link | Resource |
|---|---|
| http://marc.info/?l=bugtraq&m=109509026406554&w=2 | |
| http://secunia.com/advisories/12512 | Exploit Patch Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/17343 | |
| http://marc.info/?l=bugtraq&m=109509026406554&w=2 | |
| http://secunia.com/advisories/12512 | Exploit Patch Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/17343 |
Configurations
History
No history.
Information
Published : 2004-09-12 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-1677
Mitre link : CVE-2004-1677
CVE.ORG link : CVE-2004-1677
JSON object : View
Products Affected
logicnow
- perldesk
CWE
