CVE-2004-1736

Source
https://cve.org/CVERecord?id=CVE-2004-1736
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2004-1736.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2004-1736
Downstream
Published
2004-12-31T05:00:00Z
Modified
2026-04-10T03:36:40Z
Summary
[none]
Details

Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message.

References

Affected packages