VYPR
Unrated severityNVD Advisory· Published Nov 16, 2005· Updated Apr 16, 2026

CVE-2005-3592

CVE-2005-3592

Description

index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.