CVE-2008-1717: Infoleak
Published Apr 9, 2008
·Updated
WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to obtain the full path via invalid (1) page and (2) form parameters, which leaks the path from an exception handler when a valid class cannot be found.
Affected Software
1 affected component
WoltLab Burning Board=3.0.5
Event History
Apr 9, 2008
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1717?
CVE-2008-1717 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2008-1717?
To fix CVE-2008-1717, upgrade WoltLab Burning Board to a later version that addresses this issue.
3
What kind of attack does CVE-2008-1717 facilitate?
CVE-2008-1717 allows remote attackers to obtain the full path of the application through improper handling of parameters.
4
Which version of WoltLab Burning Board is affected by CVE-2008-1717?
CVE-2008-1717 affects WoltLab Burning Board version 3.0.5.
5
Can CVE-2008-1717 lead to further attacks or exploitation?
Yes, the information leak in CVE-2008-1717 can potentially assist attackers in conducting more targeted attacks.