Back to Database
Status published
Medium
CVE-2014-8082
lib/functions/database.class.php in TestLink before 1.9.13 allows remote attackers to obtain...
Vulnerability Description
lib/functions/database.class.php in TestLink before 1.9.13 allows remote attackers to obtain sensitive information via unspecified vectors, which reveals the installation path in an error message.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-8082
Credits & Attribution
No credits recorded in the NVD database.
References
- http://seclists.org/fulldisclosure/2014/Oct/106
- http://packetstormsecurity.com/files/128824/TestLink-1.9.12-Path-Disclosure.html
- http://karmainsecurity.com/KIS-2014-12
- http://www.securityfocus.com/archive/1/533799/100/0/threaded
- http://mantis.testlink.org/view.php?id=6651
- https://exchange.xforce.ibmcloud.com/vulnerabilities/97728
- http://www.securityfocus.com/bid/70713
- https://gitorious.org/testlink-ga/testlink-code/commit/c943e7a397f03e1f60b096c7e6eb94fdefd8a569
More from testlink
View All →CVE-2022-35196
TestLink v1.9.20 was discovered to contain a Cross-Site Request Forgery...
Unknown
0
CVE-2022-35195
TestLink 1.9.20 Raijin was discovered to contain a broken access...
High
7.2
CVE-2022-35194
TestLink v1.9.20 was discovered to contain a stored cross-site scripting...
Medium
5.4
CVE-2022-35193
TestLink v1.9.20 was discovered to contain a SQL injection vulnerability...
High
7.2
CVE-2020-8841
An issue was discovered in TestLink 1.9.19. The relation_type parameter...
High
8.8
Affected Vendor
testlink
View all reports →Affected Software
testlink
Vulnerable Versions:
0
Timeline
Official Publish:
October 31st, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.