Common Vulnerabilities and Exposures assigned an identifier CVE-2011-3826 to
the following vulnerability:
Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/voodoodolly/version.php and certain other files.
This issue affects the versions of the zikula package, as shipped with Fedora release of 14 and 15. Please schedule an update.
This issue affects the versions of the zikula package, as present within EPEL-5 and EPEL-6 repositories. Please schedule an update.
Created zikula tracking bugs for this issue
Affects: fedora-all [bug 741314]
Affects: epel-all [bug 741315]