Information Disclosure Vulnerability in Your Own URL Shortener by YOURLS
CVE-2011-3824

Currently unrated

Key Information:

Vendor

Yourls

Status
Vendor
CVE Published:
24 September 2011

What is CVE-2011-3824?

Your Own URL Shortener (YOURLS) version 1.5 is vulnerable to an information disclosure issue that allows remote attackers to gain access to sensitive details. This vulnerability is triggered when an attacker makes a direct request to specific .php files, such as includes/auth.php, resulting in the exposure of the installation path through error messages. The potential exposure of this data can lead to further exploitation or unauthorized access to the affected system.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.