CVE Vulnerabilities

CVE-2002-2158

Published: Dec 31, 2002 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

zenTrack 2.0.3 and earlier allows remote attackers to obtain the full path to the web root via an invalid ticket ID, which leaks the path in an error message.

Affected Software

Name Vendor Start Version End Version
Zentrack Zendocs 2.0.2c_beta 2.0.2c_beta
Zentrack Zendocs 2.0.3 2.0.3
Zentrack Zendocs 2.0.1c_beta 2.0.1c_beta

References