CVE-2005-1497: Medium severity myWebland myBloggie vulnerability
Published May 11, 2005
·Updated
index.php in myBloggie 2.1.1 allows remote attackers to obtain sensitive information via an invalid postid parameter, which reveals the path in an error message.
Affected Software
1 affected component
myWebland myBloggie=2.1.1
Event History
May 11, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1497?
The severity of CVE-2005-1497 is classified as medium due to its potential to reveal sensitive information.
2
How do I fix CVE-2005-1497?
To fix CVE-2005-1497, upgrade to a patched version of myBloggie that addresses this vulnerability.
3
What type of attack can exploit CVE-2005-1497?
CVE-2005-1497 can be exploited through a remote attack that manipulates the post_id parameter.
4
What software versions are affected by CVE-2005-1497?
CVE-2005-1497 specifically affects myBloggie version 2.1.1.
5
What information is disclosed by CVE-2005-1497?
CVE-2005-1497 can disclose the file path in an error message when an invalid post_id parameter is used.