CVE Vulnerabilities

CVE-2002-1149

Published: Oct 11, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive information such as absolute pathnames, OS information, and PHP settings.

Affected Software

NameVendorStart VersionEnd Version
Invision_boardInvision_power_services1.0 (including)1.0 (including)
Invision_boardInvision_power_services1.0.1 (including)1.0.1 (including)

References