Vulnerabilities > CVE-2002-0483 - Unspecified vulnerability in Francisco Burzi PHP-Nuke
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |
Exploit-Db
description | PHP Nuke 5.x Error Message Web Root Disclosure Vulnerability. CVE-2002-0483. Webapps exploit for php platform |
id | EDB-ID:21349 |
last seen | 2016-02-02 |
modified | 2002-03-21 |
published | 2002-03-21 |
reporter | godminus |
source | https://www.exploit-db.com/download/21349/ |
title | PHP Nuke 5.x Error Message Web Root Disclosure Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | PHP_NUKE_INSTALLED.NASL |
description | The remote host is running a copy of PHP-Nuke. Given the insecurity history of this package, the Nessus team recommends that you do not use it but use something else instead, as security was clearly not in the mind of the persons who wrote it. The author of PHP-Nuke (Francisco Burzi) even started to rewrite the program from scratch, given the huge number of vulnerabilities |
last seen | 2020-06-02 |
modified | 2003-02-17 |
plugin id | 11236 |
published | 2003-02-17 |
reporter | This script is Copyright (C) 2003-2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/11236 |
title | PHP-Nuke Detection |
code |
|