Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.
{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "2.0"
}
],
"cpe": "cpe:2.3:a:couchcms:couch:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE"
}