CVE-2012-4257
13.08.2012, 18:55
Yaqas (Yet Another Question & Answer System) 1.0 Alpha 1 allows remote attackers to obtain sensitive information via an invalid character in the PHPSESSID, which reveals the installation path in an error message.Enginsight
Vendor | Product | Version |
---|---|---|
george_karpouzas | yet_another_question_\&_answer_system | 1.0:alpha1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References