CVE-2011-2727
30.12.2014, 02:59
The (1) templatewrap/templatefoot.php, (2) cmsjs/plugin.js.php, and (3) cmsincludes/cms_plugin_api_link.inc.php scripts in Tribal Tribiq CMS before 5.2.7c allow remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message.Enginsight
Vendor | Product | Version |
---|---|---|
tribiq | tribiq_cms | 𝑥 ≤ 5.2.7b |
𝑥
= Vulnerable software versions
Common Weakness Enumeration