cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter in a dologin action, which leaks the path in an error message.
Affected Software
Name |
Vendor |
Start Version |
End Version |
E-dating_system |
Scriptsez.net |
* |
* |
References