Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-7268

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2008-7268
Last Modified 01 Dec 2010 12:00:00
Published 01 Dec 2010 11:06:12
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-7268

Summary

The phpinfo function in SiteEngine 5.x allows remote attackers to obtain system information by setting the action parameter to php_info in misc.php.

Vulnerable Systems

Application

  • Boka Siteengine 5.0


References

XF - siteengine-misc-information-disclosure(46180)

BUGTRAQ - 20081023 SiteEngine 5.x Multiple Remote Vulnerabilities

MILW0RM - 6823

SECUNIA - 32404


Last Updated: 27 May 2016 10:49:32