CVE-2005-4156

Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.3_beta:*:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.9:*:*:*:*:*:*:*

History

21 Nov 2024, 00:03

Type Values Removed Values Added
References () http://securitytracker.com/alerts/2005/Nov/1015176.html - () http://securitytracker.com/alerts/2005/Nov/1015176.html -
References () http://www.procheckup.com/Vulner_PR0511.php - () http://www.procheckup.com/Vulner_PR0511.php -

Information

Published : 2005-12-11 02:03

Updated : 2024-11-21 00:03


NVD link : CVE-2005-4156

Mitre link : CVE-2005-4156

CVE.ORG link : CVE-2005-4156


JSON object : View

Products Affected

mambo

  • mambo_open_source_4.5