Vulnerability Details CVE-2005-2887
MAXdev MD-Pro 1.0.73, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to (1) wiki.php, (2) AutoTheme directory, (3) Blocks directory, (4) admin.php, (5) pnadmin.php, or (6) Topics directory, which reveal the path in an error message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 71.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2005-2887
-
cpe:2.3:a:maxdev:md-pro:1.0.73