← Back

CVE-2010-4781

nvd nist
Published: Apr 7, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

index.php in Enano CMS 1.1.7pl1, and possibly other versions before 1.1.8, 1.0.6pl3, and 1.1.7pl2, allows remote attackers to obtain sensitive information via a crafted title parameter, which reveals the installation path in an error message.

Affected (27)

Products: Enanocms: Enano Cms
1 product
Enano Cms
Configuration A
27 vulnerable
Vulnerable SoftwareAffected Versions
Enanocms
Up to 1.1.7
Version 0.8.1
Version 0.8.2
Version 0.8.3
Version 0.8.4
Version 0.9.1
Version 0.9.2
Version 0.9.3
Version 1.0.1
Version 1.0.2
Version 1.0.2b1
Version 1.0.3
Version 1.0.4
Version 1.0.5
Version 1.0.6
Version 1.0.6 pl1
Version 1.0.6 pl2
Version 1.0.6 pl3
Version 1.0
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 1.1.6
Version 1.1.7
Version 1.1.7 pl1

Timeline

No history available yet.