CVE-2004-2748
NetIQ WebTrends Reporting Center Enterprise Edition 6.1a - Information Disclosure via Invalid profileid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-2748. PoCs published by Oliver Karow.
AI-analyzed exploit summary This is a writeup describing an information disclosure vulnerability in WebTrends Reporting Center 6.1a. The issue allows path disclosure via an invalid 'profileid' parameter in the 'viewreport.pl' URI.
Description
viewreport.pl in NetIQ WebTrends Reporting Center Enterprise Edition 6.1a allows remote attackers to determine the installation path via an invalid profileid parameter, which leaks the pathname in an error message.
Exploits (1)
This is a writeup describing an information disclosure vulnerability in WebTrends Reporting Center 6.1a. The issue allows path disclosure via an invalid 'profileid' parameter in the 'viewreport.pl' URI.