Vulnonym.org

CVE-2005-0722 - Meager Tiffany

Description

eXPerience2 allows remote attackers to obtain the full path for the web root via a direct request to modules.php without any parameters which leaks the path in a PHP error message.

Reference

http://marc.info/?l=bugtraq&m=111030766324600&w=2