cve/2009/CVE-2009-3756.md
2024-05-26 14:27:05 +02:00

707 B

CVE-2009-3756

Description

phpBMS 0.96 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php, (2) header.php, (3) the show action in advancedsearch.php, and (4) choicelist.php, which reveals the installation path in an error message.

POC

Reference

Github

No PoCs found on GitHub currently.