CVE-2007-4185

Joomla! 1.0.12 - Information Disclosure via Direct Request to Sensitive Files

Title source: llm
STIX 2.1

Description

Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.php, (4) Modifier.php, (5) Reader.php, and (6) TemplateCache.php in includes/patTemplate/patTemplate/; (7) includes/Cache/Lite/Output.php; and other unspecified components, which reveal the path in various error messages.

References (11)

Core 11
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39043
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/475066/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39037
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/480757/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39038
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39041
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/480738/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/480809/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39039
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39040
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/39042

Scores

EPSS 0.0049
EPSS Percentile 65.9%

Details

Status published
Products (1)
joomla/joomla 1.0.12
Published Aug 08, 2007
Tracked Since Feb 18, 2026