CVE-2003-1089
Zorum 3.4 - Information Disclosure via Invalid Parameter Names
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2003-1089. PoCs published by Zone-h Security Team.
AI-analyzed exploit summary The provided text describes a path disclosure vulnerability in Zorum message board software, where a malformed HTTP request can reveal the installation path. No actual exploit code is present, only a description and an example URL.
Description
index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the path in a PHP error message.
Exploits (1)
The provided text describes a path disclosure vulnerability in Zorum message board software, where a malformed HTTP request can reveal the installation path. No actual exploit code is present, only a description and an example URL.