# CVE-2002-1149

## Summary

- **CVE ID:** CVE-2002-1149
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Oct 1, 2002
- **Last Modified:** Mar 16, 2026

## Description

The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive information such as absolute pathnames, OS information, and PHP settings.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://marc.info/?l=bugtraq&m=103290602609197&w=2)
- [CNA](http://www.iss.net/security_center/static/10178.php)
- [CNA](http://www.osvdb.org/3356)
- [CNA](http://www.securityfocus.com/bid/5789)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.73%
- **EPSS Percentile:** 72.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._