CVE-2009-2160: Medium severity torrenttrader classic vulnerability
TorrentTrader Classic 1.09 allows remote attackers to (1) obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function; and allows remote attackers to (2) obtain other potentially sensitive information via a direct request to check.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2160?
CVE-2009-2160 has been classified as a moderate severity vulnerability due to the potential exposure of sensitive configuration information.
How do I fix CVE-2009-2160?
To fix CVE-2009-2160, restrict access to the phpinfo.php and check.php files to prevent unauthorized requests.
What type of attack is possible with CVE-2009-2160?
An attacker can exploit CVE-2009-2160 to obtain sensitive configuration information and potentially other credentials from the affected system.
Which version of TorrentTrader Classic is affected by CVE-2009-2160?
CVE-2009-2160 affects TorrentTrader Classic version 1.09.
Is CVE-2009-2160 still relevant today?
While CVE-2009-2160 was reported in 2009, it remains relevant for systems that have not been updated or patched.