Required CVE Record Information
Description
HUBScript 1.0 allows remote attackers to obtain configuration information via a direct request to manage/phpinfo.php, which calls the phpinfo function.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- osvdb.org: 55962 vdb-entryx_transferred
- secunia.com: 35895 third-party-advisoryx_transferred
- exchange.xforce.ibmcloud.com: hubscript-phpinfo-information-disclosure(51830) vdb-entryx_transferred
- http://packetstormsecurity.org/0907-exploits/hubscript-xssphpinfo.txt x_transferred