AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-2009

MEDIUM · CVSS 5 EPSS 1.37%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-05-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-2009
Severity
MEDIUM
CVSS
5
EPSS
1.37%

Original NVD Description

NukeJokes 1.7 and 2 Beta allows remote attackers to obtain the full path of the server via (1) a direct call to mainfunctions.php, (2) an invalid jokeid parameter in a JokeView function or (3) an invalid cat parameter in a CatView function, which reveals the path in a PHP error message.