CVE-2005-4389

search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) criteria, (7) advanced, and (8) intern parameters.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:contens:contens:2.5:*:*:*:*:*:*:*
cpe:2.3:a:contens:contens:3.0:*:*:*:*:*:*:*

Information

Published : 2005-12-20 02:03

Updated : 2017-07-20 01:29


NVD link : CVE-2005-4389

Mitre link : CVE-2005-4389


JSON object : View

Products Affected

contens

  • contens