Field Assessment
AI analysis pending.
CVE
CVE-2005-1028
Severity
MEDIUM
CVSS
5
EPSS
1.19%
Original Filing — NVD Description
PHP-Nuke 6.x through 7.6 allows remote attackers to obtain sensitive information via a direct request to (1) index.php with the forum_admin parameter set, (2) the Surveys module, or (3) the Your_Account module, which reveals the path in a PHP error message.