First published: Wed Nov 16 2005(Updated: )
content.php in Mambo 4.5.2 through 4.5.2.3 allows remote attackers to obtain the installation path of the application via a URL that causes the application to return an error.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mambo (MamboCMS) | =4.5.2 | |
Mambo (MamboCMS) | =4.5.2.2 | |
Mambo (MamboCMS) | =4.5.2.3 | |
Mambo (MamboCMS) | =4.5.2.1 | |
Mambo | =4.5.2 | |
Mambo | =4.5.2.1 | |
Mambo | =4.5.2.2 | |
Mambo | =4.5.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3586 has been classified as a low severity vulnerability.
To fix CVE-2005-3586, upgrade to Mambo version 4.5.3 or later.
CVE-2005-3586 can expose the installation path of Mambo, which may assist attackers in exploiting other vulnerabilities.
Yes, CVE-2005-3586 can be exploited by remote attackers through specially crafted URLs.
CVE-2005-3586 affects Mambo versions 4.5.2, 4.5.2.1, 4.5.2.2, and 4.5.2.3.