CVE-2005-0827: Medium severity Runcms RunCMS vulnerability
Viewcat.php in (1) RUNCMS 1.1A, (2) Ciamos 0.9.2 RC1, e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allow remote attackers to obtain sensitive information via an invalid parameter to the convertorderbytrans function, which reveals the path in a PHP error message.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0827?
CVE-2005-0827 is classified as a medium severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2005-0827?
To fix CVE-2005-0827, you should update the affected software to the latest version that addresses this vulnerability.
Which software is affected by CVE-2005-0827?
CVE-2005-0827 affects RUNCMS 1.1A, Ciamos 0.9.2 RC1, and e-Xoops 1.05 Rev3.
What kind of information is disclosed by CVE-2005-0827?
CVE-2005-0827 allows remote attackers to obtain sensitive information, specifically the server path via PHP error messages.
Can CVE-2005-0827 be exploited remotely?
Yes, CVE-2005-0827 can be exploited by remote attackers through an invalid parameter sent to the vulnerable function.