← Back

CVE-2009-2115

nvd nist
Published: Jun 18, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:L/Au:S/C:C/I:N/A:N
Exploitability: 8.0 / Impact: 6.9
Source: NVD

Description

admin.php in SkyBlueCanvas 1.1 r237 allows remote authenticated administrators to obtain sensitive information via an invalid id parameter, which reveals the installation path in an error message.

Affected (1)

1 product
Skybluecanvas
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.1

References (6)

Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.