Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2922

Опубликовано: 21 мая 2012
Источник: debian
EPSS Низкий

Описание

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
drupal7fixed7.22-1package

Примечания

  • Path disclosure irrelevant for Debian

EPSS

Процентиль: 68%
0.0059
Низкий

Связанные уязвимости

ubuntu
около 13 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

nvd
около 13 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

github
около 3 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

EPSS

Процентиль: 68%
0.0059
Низкий