CVE Vulnerabilities

CVE-2002-0483

Published: Aug 12, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.

Affected Software

NameVendorStart VersionEnd Version
Php-nukeFrancisco_burzi5.0 (including)5.0 (including)
Php-nukeFrancisco_burzi5.0.1 (including)5.0.1 (including)
Php-nukeFrancisco_burzi5.1 (including)5.1 (including)
Php-nukeFrancisco_burzi5.2 (including)5.2 (including)
Php-nukeFrancisco_burzi5.2a (including)5.2a (including)
Php-nukeFrancisco_burzi5.3.1 (including)5.3.1 (including)
Php-nukeFrancisco_burzi5.4 (including)5.4 (including)

References