CVE-2006-3104

Bitweaver 1.3 - Info Disclosure

Title source: llm

Description

users/index.php in Bitweaver 1.3 allows remote attackers to obtain sensitive information via an invalid sort_mode parameter, which reveals the installation path and database information in the resultant error message.

Exploits (1)

exploitdb WORKING POC
phpwebappsphp
https://www.exploit-db.com/exploits/1918

Scores

EPSS 0.0507
EPSS Percentile 89.8%

Details

Status published
Products (1)
bitweaver/bitweaver 1.3
Published Jun 21, 2006
Tracked Since Feb 18, 2026