Vulnerability Details CVE-2002-1801
ImageFolio 2.23 through 2.27 allows remote attackers to obtain sensitive information via a nonexistent image category, which leaks the web root in the resulting error message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-1801
-
cpe:2.3:a:bizdesign:imagefolio:2.23
-
cpe:2.3:a:bizdesign:imagefolio:2.24
-
cpe:2.3:a:bizdesign:imagefolio:2.26
-
cpe:2.3:a:bizdesign:imagefolio:2.27