CVE-2005-3586: Medium severity Mambo Mambo vulnerability
Published Nov 16, 2005
·Updated
content.php in Mambo 4.5.2 through 4.5.2.3 allows remote attackers to obtain the installation path of the application via a URL that causes the application to return an error.
Affected Software
4 affected components
Mambo Mambo=4.5.2
Mambo Mambo=4.5.2.2
Mambo Mambo=4.5.2.3
Mambo Mambo=4.5.2.1
Event History
Nov 16, 2005
CVE Published
07:42 AM
CVE Published
via MITRE·12:37 PM
Data Sourced
via MITRE·12:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3586?
CVE-2005-3586 has been classified as a low severity vulnerability.
2
How do I fix CVE-2005-3586?
To fix CVE-2005-3586, upgrade to Mambo version 4.5.3 or later.
3
What impact does CVE-2005-3586 have on my Mambo installation?
CVE-2005-3586 can expose the installation path of Mambo, which may assist attackers in exploiting other vulnerabilities.
4
Can CVE-2005-3586 be exploited remotely?
Yes, CVE-2005-3586 can be exploited by remote attackers through specially crafted URLs.
5
Which versions of Mambo are affected by CVE-2005-3586?
CVE-2005-3586 affects Mambo versions 4.5.2, 4.5.2.1, 4.5.2.2, and 4.5.2.3.