vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the path in an error message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vubb | Vubb | 0.2 (including) | 0.2 (including) |
Vubb | Vubb | 0.2.1 (including) | 0.2.1 (including) |