Vulnerabilities (CVE)

Filtered by vendor Mamboxchange Subscribe
Filtered by product Laithai
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-7092 1 Mamboxchange 1 Laithai 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in includes/mambo.php in Mambo LaiThai 4.5.4 SP2 and earlier allows remote attackers to execute arbitrary SQL commands via the usercookie[password] cookie parameter.
CVE-2006-7093 1 Mamboxchange 1 Laithai 2024-02-28 5.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Mambo LaiThai 4.5.4 Security Patch 2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2008-0500 1 Mamboxchange 1 Laithai 2024-02-28 10.0 HIGH N/A
Multiple unspecified vulnerabilities in Mambo LaiThai 4.5.5 have unknown impact and attack vectors related to (1) mod_login and (2) mod_template_chooser.
CVE-2008-0499 1 Mamboxchange 1 Laithai 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in Mambo LaiThai 4.5.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.