296,746
Total vulnerabilities in the database
eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.
| Software | From | Fixed in | 
|---|---|---|
| elinestudio / site_composer | - | 2.6.x | 
| elinestudio / site_composer | 2.5 | 2.5.x |