The dofreePDF function in includes/pdf.php in Mambo 4.6.1 does not properly check access rights for database content, which allows remote attackers to read certain content via unspecified vectors.
References
Configurations
History
21 Nov 2024, 00:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/25039 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/23787 - | |
References | () http://www.tracker.mambo-foundation.org/?do=details&task_id=170 - |
Information
Published : 2007-05-09 18:19
Updated : 2024-11-21 00:24
NVD link : CVE-2006-7202
Mitre link : CVE-2006-7202
CVE.ORG link : CVE-2006-7202
JSON object : View
Products Affected
mambo
- mambo_open_source
CWE