9.4
CVSSv2

CVE-2005-4156

Published: 11/12/2005 Updated: 05/09/2008
CVSS v2 Base Score: 9.4 | Impact Score: 9.2 | Exploitability Score: 10
VMScore: 837
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:C

Vulnerability Summary

Unspecified vulnerability in Mambo 4.5 (1.0.0) up to and including 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote malicious users to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character.

Vulnerable Product Search on Vulmon Subscribe to Product

mambo mambo open source 4.5 1.0.1

mambo mambo open source 4.5 1.0.2

mambo mambo open source 4.5 1.0.3

mambo mambo open source 4.5 1.0.3_beta

mambo mambo open source 4.5 1.0.0

mambo mambo open source 4.5 1.0.9