CVE-2014-8082

lib/functions/database.class.php in TestLink before 1.9.13 allows remote attackers to obtain sensitive information via unspecified vectors, which reveals the installation path in an error message.

Date published : 2014-10-31

http://www.securityfocus.com/bid/70713

http://www.securityfocus.com/archive/1/533799/100/0/threaded