Unrated severityNVD Advisory· Published Oct 31, 2014· Updated May 6, 2026
CVE-2014-8082
CVE-2014-8082
Description
lib/functions/database.class.php in TestLink before 1.9.13 allows remote attackers to obtain sensitive information via unspecified vectors, which reveals the installation path in an error message.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- karmainsecurity.com/KIS-2014-12nvdExploitPatch
- packetstormsecurity.com/files/128824/TestLink-1.9.12-Path-Disclosure.htmlnvdExploitPatch
- seclists.org/fulldisclosure/2014/Oct/106nvdExploitPatch
- mantis.testlink.org/view.phpnvdVendor Advisory
- www.securityfocus.com/archive/1/533799/100/0/threadednvd
- www.securityfocus.com/bid/70713nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/97728nvd
- gitorious.org/testlink-ga/testlink-code/commit/c943e7a397f03e1f60b096c7e6eb94fdefd8a569nvd
News mentions
0No linked articles in our index yet.