header-logo
Suggest Exploit
vendor:
ScozBook
by:
SecurityFocus
7.5
CVSS
HIGH
Path Disclosure
200
CWE
Product Name: ScozBook
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: a:scozbook:scozbook
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

Path Disclosure Vulnerability in ScozBook

A path disclosure vulnerability has been reported for ScozBook. The issue occurs when a request is made to the view.php script page. Access to sensitive filesystem information may aid an attacker in launching further attacks against a target system.

Mitigation:

Ensure that the view.php script is not accessible to unauthorized users.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/7236/info

A path disclosure vulnerability has been reported for ScozBook. The issue occurs when a request is made to the view.php script page.

Access to sensitive filesystem information may aid an attacker in launching further attacks against a target system. 

http://hostname/scozbook/view.php?PG=test