CVE-2005-1688

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.
References
Link Resource
http://marc.info/?l=bugtraq&m=111661517716733&w=2 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*

History

28 Dec 2023, 19:27

Type Values Removed Values Added
CWE NVD-CWE-Other CWE-425
References () http://marc.info/?l=bugtraq&m=111661517716733&w=2 - () http://marc.info/?l=bugtraq&m=111661517716733&w=2 - Third Party Advisory

Information

Published : 2005-05-20 04:00

Updated : 2023-12-28 19:27


NVD link : CVE-2005-1688

Mitre link : CVE-2005-1688

CVE.ORG link : CVE-2005-1688


JSON object : View

Products Affected

wordpress

  • wordpress
CWE
CWE-425

Direct Request ('Forced Browsing')