Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2005-0721
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
PHP remote file inclusion vulnerability in modules.php in eXPerience2 allows remote attackers to execute arbitrary PHP code by modifying the file parameter to reference a URL on a remote web server that contains the code.
0
Attacker Value
Unknown
CVE-2005-0722
Disclosure Date: March 07, 2005 (last updated February 22, 2025)
eXPerience2 allows remote attackers to obtain the full path for the web root via a direct request to modules.php without any parameters, which leaks the path in a PHP error message.
0