CVE-2005-0512: High severity Mambo Mambo vulnerability
Published Feb 21, 2005
·Updated
PHP remote file inclusion vulnerability in Tar.php in Mambo 4.5.2 allows remote attackers to execute arbitrary PHP code by modifying the mosConfigabsolutepath parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2004-1693.
Affected Software
1 affected component
Mambo Mambo<=4.5.2
Remediation
Patch Available
Event History
Feb 21, 2005
CVE Published
05:00 AM
Feb 23, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0512?
CVE-2005-0512 is considered a critical vulnerability due to its ability to allow remote code execution.
2
How do I fix CVE-2005-0512?
To fix CVE-2005-0512, upgrade Mambo to a version later than 4.5.2.1.
3
What systems are affected by CVE-2005-0512?
CVE-2005-0512 affects Mambo versions up to and including 4.5.2.
4
What type of vulnerability is CVE-2005-0512?
CVE-2005-0512 is a remote file inclusion vulnerability.
5
Can CVE-2005-0512 lead to full system compromise?
Yes, exploitation of CVE-2005-0512 can potentially lead to full system compromise.