Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Invision Board PHPINFO.PHP Information Disclosure Vulnerability

Invision Board, in the suggestion installation, may disclose sensitive information to remote attackers.

The suggested installation procedure suggests that users include the 'phpinfo.php' script. This script provides information about the environment that the software is running in. If remote attackers access this script, this may disclose sensitive information which may assist in further attacks.







 

Privacy Statement
Copyright 2008, SecurityFocus