CVE-2009-4943
Last modified
CVE-2009-4943 is a vulnerability of currently unknown severity. index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.. EPSS estimates a 1.22% chance of exploitation in the next 30 days.
Description
index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Impactsoftcompany | Adpeeps | 8.5 | D1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-4943?
How severe is CVE-2009-4943?
How do I fix CVE-2009-4943?
Are you affected by CVE-2009-4943?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
