CVE-2008-6676

Quickersite - Improper Input Validation

Title source: rule

Description

QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any parameters, which reveals the installation path in an error message.

Exploits (1)

exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/5733

Scores

EPSS 0.0362
EPSS Percentile 87.8%

Details

CWE
CWE-20
Status published
Products (1)
quickersite/quickersite 1.8.5
Published Apr 08, 2009
Tracked Since Feb 18, 2026