CVE-2005-2887: Medium severity MAXdev MD-Pro vulnerability
MAXdev MD-Pro 1.0.73, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to (1) wiki.php, (2) AutoTheme directory, (3) Blocks directory, (4) admin.php, (5) pnadmin.php, or (6) Topics directory, which reveal the path in an error message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2887?
CVE-2005-2887 is considered to be of medium severity due to its potential exposure of sensitive information.
How do I fix CVE-2005-2887?
To fix CVE-2005-2887, you should upgrade to the latest version of MAXdev MD-Pro that addresses these vulnerabilities.
What versions are affected by CVE-2005-2887?
CVE-2005-2887 affects MAXdev MD-Pro version 1.0.73 and possibly earlier versions.
What information can be disclosed by CVE-2005-2887?
CVE-2005-2887 allows attackers to obtain sensitive information such as file paths through error messages.
Can CVE-2005-2887 be exploited remotely?
Yes, CVE-2005-2887 can be exploited by remote attackers through direct requests to specific files or directories.