First published: Wed Mar 26 2003(Updated: )
bonsai Mozilla CVS query tool leaks the absolute pathname of the tool in certain error messages generated by (1) cvslog.cgi, (2) cvsview2.cgi, or (3) multidiff.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Bonsai | =1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0153 is considered to have a medium severity due to information leakage.
To fix CVE-2003-0153, upgrade to a version of Mozilla Bonsai that addresses this vulnerability.
CVE-2003-0153 affects the cvslog.cgi, cvsview2.cgi, and multidiff.cgi components.
CVE-2003-0153 is classified as an information disclosure vulnerability.
CVE-2003-0153 was reported in 2003, highlighting the privacy concerns in software error messages.