Mambo-foundation

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 26
    Known Exploited: 0
    1
    Critical Level Threats
    10
    High Level Threats
    13
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2011-2499

    Mambo CMS through 4.6.5 has multiple XSS.

    Last Modified: Nov 21, 2024
    Published: Feb 12, 2020

    CVE-2013-2565

    A vulnerability in Mambo CMS v4.6.5 where the scripts thumbs.php, editorFrame.php, editor.php, images.php, manager.php discloses the root path of the webserver.

    Last Modified: Nov 21, 2024
    Published: Feb 15, 2019

    CVE-2013-2563

    Mambo CMS 4.6.5 uses world-readable permissions on configuration.php, which allows local users to obtain the admin password hash by reading the file.

    Last Modified: Apr 12, 2025
    Published: Jun 09, 2014

    CVE-2013-2564

    Mambo CMS 4.6.5 allows remote attackers to cause a denial of service (memory and bandwidth consumption) by uploading a crafted file.

    Last Modified: Apr 12, 2025
    Published: Jun 09, 2014

    CVE-2013-2562

    Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.

    Last Modified: Apr 12, 2025
    Published: Jun 09, 2014
    Items Per Page
    Mambo-Foundation Vulnerabilities & Security CVEs | CVE-DB