HTTP: Exoops File disclosure

This signature detects attempts to exploit a file disclosure vulnerability in the Exoops web system.

Extended Description

RunCMS is reportedly affected by an information disclosure vulnerability. This issue is due to a failure in the application to secure sensitive information. Exploitation of this vulnerability could lead to the disclosure of database configuration details, including the database name, user name and password. RunCMS was formerly named E-Xoops.

Affected Products

E-xoops e-xoops

References

BugTraq: 12848

CVE: CVE-2005-0828

Short Name
HTTP:PHP:EXOOPS-FD
Severity
Warning
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2005-0828 Exoops File bid:12848 disclosure
Release Date
03/28/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Runcms

E-xoops

CVSS Score

5.0

Found a potential security threat?