Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2922

Опубликовано: 21 мая 2012
Источник: debian
EPSS Низкий

Описание

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
drupal7fixed7.22-1package

Примечания

  • Path disclosure irrelevant for Debian

EPSS

Процентиль: 65%
0.00499
Низкий

Связанные уязвимости

ubuntu
больше 13 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

nvd
больше 13 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

github
больше 3 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

EPSS

Процентиль: 65%
0.00499
Низкий