Loading vulnerability details…
CVSS v3.1
N/A
EPSS
2.94%
Published
Aug 6, 2004
Modified
Jun 16, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
csFAQ.cgi in csFAQ allows remote attackers to gain sensitive information via an invalid database parameter, which reveals the path to the web server in an error message.
Affected Products (2)
References (8)