CVE-2002-0483

index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.

Scoring

CVSS base score
0
EPSS probability
0.11%
Published
2002-06-11
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs