Show filters
502 Total Results
Displaying 501-502 of 502
Sort by:
Attacker Value
Unknown
CVE-2002-0892
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
The default configuration of NewAtlanta ServletExec ISAPI 4.1 allows remote attackers to determine the path of the web root via a direct request to com.newatlanta.servletexec.JSP10Servlet without a filename, which leaks the pathname in an error message.
0
Attacker Value
Unknown
CVE-2024-11153
Last updated March 05, 2025
The Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.5.0 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract sensitive data from posts that have been restricted to higher-level roles such as logged-in users.
0