CVE-2005-0780
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/03/2005
Last modified:
03/04/2025
Description
paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) auth.php, (2) login.php, (3) category.php, (4) file.php, (5) team.php, (6) license.php, (7) custom.php, (8) admins.php, or (9) backupdb.php, which reveal the path in a PHP error message.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:php_arena:pafiledb:1.1.3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:php_arena:pafiledb:2.1.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:php_arena:pafiledb:3.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:php_arena:pafiledb:3.0_beta_3.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:php_arena:pafiledb:3.1:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



