Information Disclosure in Elgg 1.7.6 by Allometric
CVE-2011-3733
Currently unrated
What is CVE-2011-3733?
Elgg version 1.7.6 contains a vulnerability that allows remote attackers to access sensitive information through direct requests to specific PHP files. This exposure can potentially lead to the disclosure of installation paths and other sensitive data, as evidenced by error messages generated from files such as vendors/simpletest/test/visual_test.php. Addressing this issue is crucial to preventing unauthorized access to system configuration details.
