VYPR
Unrated severityNVD Advisory· Published Aug 12, 2002· Updated Apr 16, 2026

CVE-2002-0483

CVE-2002-0483

Description

index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.

Affected products

7
  • PHP-Nuke/PHP Nuke7 versions
    cpe:2.3:a:francisco_burzi:php-nuke:5.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:francisco_burzi:php-nuke:5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.2a:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:francisco_burzi:php-nuke:5.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.