VYPR
Unrated severityNVD Advisory· Published Jun 18, 2009· Updated Jun 16, 2026

CVE-2009-2115

CVE-2009-2115

Description

admin.php in SkyBlueCanvas 1.1 r237 allows remote authenticated administrators to obtain sensitive information via an invalid id parameter, which reveals the installation path in an error message.

Affected products

2
  • cpe:2.3:a:skybluecanvas:skybluecanvas:1.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:skybluecanvas:skybluecanvas:1.1:*:*:*:*:*:*:*
    • (no CPE)range: r237

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.