Due to webserver misconfiguration an unauthenticated remote attacker is able to read the source of php modules.
CVSS Metrics