5
CVSSv2

CVE-2008-7212

Published: 11/09/2009 Updated: 11/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

MOStlyCE prior to 2.4, as used in Mambo 4.6.3 and previous versions, allows remote malicious users to obtain sensitive information via certain requests to mambots/editors/mostlyce/jscripts/tiny_mce/filemanager/connectors/php/connector.php, which reveals the installation path in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

mambo-foundation mambo

mambo-foundation mambo 4.6.2

brilaps mostlyce