auction_my_auctions.php in phpbb-Auction 1.2m and earlier allows remote attackers to obtain sensitive information via an invalid mode parameter, which leaks the full path in a PHP error message. Fixed updated version on http://www.phpbb-auction.com/
Publication date: Mon, 02 May 2005 09:00:00 +0000