CVE-2002-2289

soinfo.php in BadBlue 1.7.1 calls the phpinfo function, which allows remote attackers to gain sensitive information including ODBC passwords.
Configurations

Configuration 1 (hide)

cpe:2.3:a:working_resources_inc.:badblue:1.7.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2002-12-31 05:00

Updated : 2023-12-10 10:17


NVD link : CVE-2002-2289

Mitre link : CVE-2002-2289

CVE.ORG link : CVE-2002-2289


JSON object : View

Products Affected

working_resources_inc.

  • badblue
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor