CVE Database
/

CVE-2004-2196

Back to search

CVE-2004-2196

Published: Jul 10, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.

VendorProductVersions

n/a

n/a

affected
n/a

References

10679
vdb-entry
x_refsource_OSVDB
12792
third-party-advisory
x_refsource_SECUNIA
10678
vdb-entry
x_refsource_OSVDB
1011612
vdb-entry
x_refsource_SECTRACK
10682
vdb-entry
x_refsource_OSVDB
10680
vdb-entry
x_refsource_OSVDB
10677
vdb-entry
x_refsource_OSVDB
10681
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now