PhpGedView 2.61 - PHPInfo Information Disclosure

EDB-ID:

23526


Author:

Windak

Type:

webapps


Platform:

PHP

Date:

2004-01-06


source: https://www.securityfocus.com/bid/9371/info

PhpGedView allows remote users to access information displayed by the phpinfo() function. This may disclose sensitive information about the environment the software runs in.

This issue is reported to affect PhpGedView 2.61. Other versions are also likely affected.

http://www.example.com/phpgedview_folder/admin.php?action=phpinfo