CVE-2008-7146
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD
Description
IntraLearn Software IntraLearn 2.1, and possibly other versions before 4.2.3, allows remote attackers to obtain sensitive information via a direct request to (1) Knowledge_Impact_Course.htm, (2) LRN-formatted_Course.htm, or (3) Create_Course.htm in help/1/Instructor/, which reveals the installation path in an error message.
Affected (2)
Products: Intralearn: Intralearn
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
References (8)
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Timeline
No history available yet.