vendor:
Mura CMS
by:
Vladimir Vorontsov
5.5
CVSS
MEDIUM
Disclosure of ways
N/A
CWE
Product Name: Mura CMS
Affected Version From: Mura CMS <= 5.1
Affected Version To: Mura CMS <= 5.1
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
[ONSEC-09-020] Mura CMS root folder disclosure
content management system Mura CMS found a number of information disclosure vulnerability. An attacker can learn the version and type of database driver, database name, structure and format of some DBMS tables, column names, their type and size information about the Web server and virtual machine, Java. The vulnerability exists due to the error message when you try to write in the database values is not suitable for the format.
Mitigation:
N/A