Unrated severityNVD Advisory· Published May 14, 2007· Updated Jun 16, 2026
CVE-2007-1901
CVE-2007-1901
Description
SonicBB 1.0 allows remote attackers to obtain sensitive information via the (1) by[] parameter to search.php, (2) p[] parameter to viewforum.php, and the (3) id parameter to (a) viewforum.php or (b) members.php, which reveal the installation path in the resulting error message.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
10- www.netvigilance.com/advisory0018nvdVendor Advisory
- marc.infonvd
- osvdb.org/34701nvd
- osvdb.org/34702nvd
- osvdb.org/34703nvd
- secunia.com/advisories/25279nvd
- www.osvdb.org/33906nvd
- www.securityfocus.com/archive/1/468535/100/0/threadednvd
- www.vupen.com/english/advisories/2007/1816nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/34259nvd
News mentions
0No linked articles in our index yet.