Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2922

Опубликовано: 21 мая 2012
Источник: debian
EPSS Низкий

Описание

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
drupal7fixed7.22-1package

Примечания

  • Path disclosure irrelevant for Debian

EPSS

Процентиль: 86%
0.03008
Низкий

Связанные уязвимости

ubuntu
около 14 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

nvd
около 14 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

github
около 4 лет назад

The request_path function in includes/bootstrap.inc in Drupal 7.14 and earlier allows remote attackers to obtain sensitive information via the q[] parameter to index.php, which reveals the installation path in an error message.

EPSS

Процентиль: 86%
0.03008
Низкий