Unrated severityNVD Advisory· Published Aug 12, 2002· Updated Apr 16, 2026
CVE-2002-0483
CVE-2002-0483
Description
index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.
Affected products
7cpe:2.3:a:francisco_burzi:php-nuke:5.0:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:francisco_burzi:php-nuke:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.1:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.2:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.2a:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:francisco_burzi:php-nuke:5.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/4333nvdExploitVendor Advisory
- online.securityfocus.com/archive/1/263337nvdVendor Advisory
- www.iss.net/security_center/static/8618.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.