Total vulnerabilities in the database
BadBlue 2.4 allows remote attackers to obtain the location of the server installation path via a request for phptest.php, which includes the pathname in the source of the resulting HTML.
CVSS v2:
No CWE or OWASP classifications available.