CVE-2005-3050: Medium severity PhpMyFaq phpmyfaq vulnerability
Published Sep 23, 2005
·Updated
PhpMyFaq 1.5.1 allows remote attackers to obtain sensitive information via a LANGCODE parameter that does not exist, which reveals the path in an error message.
Affected Software
1 affected component
PhpMyFaq phpmyfaq=1.5.1
Event History
Sep 23, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3050?
CVE-2005-3050 has a moderate severity level due to its potential for information disclosure.
2
How do I fix CVE-2005-3050?
To fix CVE-2005-3050, upgrade phpMyFAQ to a version later than 1.5.1 which addresses this vulnerability.
3
What is the impact of CVE-2005-3050?
The impact of CVE-2005-3050 is that it allows remote attackers to obtain sensitive file path information from the server.
4
Which versions of phpMyFAQ are affected by CVE-2005-3050?
CVE-2005-3050 specifically affects phpMyFAQ version 1.5.1.
5
How can I mitigate risk from CVE-2005-3050 before applying a patch?
To mitigate risk from CVE-2005-3050, ensure that sensitive information is not exposed through error messages and consider implementing additional access controls.