First published: Sat Dec 15 2007(Updated: )
BadBlue 2.72b and earlier allows remote attackers to obtain sensitive information via an invalid browse parameter, which reveals the installation path in an error message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Badblue | <=2.72b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6379 has a medium severity level due to its potential to expose sensitive information.
To fix CVE-2007-6379, upgrade to BadBlue version 2.72c or later.
CVE-2007-6379 can expose the installation path of the BadBlue server in error messages.
CVE-2007-6379 affects BadBlue versions 2.72b and earlier.
Yes, CVE-2007-6379 may assist attackers in targeting the system more effectively by exposing its installation path.