CVE-2005-0998: Medium severity Francisco Burzi PHP-Nuke vulnerability
Published Apr 7, 2005
·Updated
The WebLinks module for PHP-Nuke 7.6 allows remote attackers to obtain sensitive information via an invalid show parameter, which triggers a division by zero PHP error that leaks the full pathname of the server.
Affected Software
1 affected component
Francisco Burzi PHP-Nuke=7.6
Event History
Apr 7, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0998?
CVE-2005-0998 is considered a moderate severity vulnerability due to the potential for information disclosure.
2
How do I fix CVE-2005-0998?
To fix CVE-2005-0998, upgrade to a patched version of PHP-Nuke that addresses this vulnerability.
3
What type of vulnerability is CVE-2005-0998?
CVE-2005-0998 is an information disclosure vulnerability caused by a division by zero error.
4
What are the potential impacts of CVE-2005-0998?
Exploitation of CVE-2005-0998 can lead to exposure of sensitive file paths on the server.
5
Which software versions are affected by CVE-2005-0998?
CVE-2005-0998 affects PHP-Nuke version 7.6.