MEDIUM · 5.0

CVE-2004-2588

Intentional information leak in phpinfo.php in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allows remote attackers to obtain sensitive information such as the configuration of the web se...

Vulnerability Description

Intentional information leak in phpinfo.php in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allows remote attackers to obtain sensitive information such as the configuration of the web server and the PHP application.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Xmb SoftwareXmb Forum1.9_nexus_beta

References

FAQ

What is CVE-2004-2588?

CVE-2004-2588 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Intentional information leak in phpinfo.php in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allows remote attackers to obtain sensitive information such as the configuration of the web se...

How severe is CVE-2004-2588?

CVE-2004-2588 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-2588?

Check the references section above for vendor advisories and patch information. Affected products include: Xmb Software Xmb Forum.