CVE-2003-1089

index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the path in a PHP error message.

Scoring

CVSS base score
0.21
EPSS probability
5.25%
Published
2005-03-07
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs