First published: Mon Jun 09 2014(Updated: )
Mambo CMS 4.6.5 allows remote attackers to cause a denial of service (memory and bandwidth consumption) by uploading a crafted file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mambo CMS | =4.6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-2564 has been classified as a medium severity vulnerability due to its potential for denial of service.
CVE-2013-2564 affects Mambo CMS 4.6.5 by allowing remote attackers to exploit file uploads to consume memory and bandwidth.
The impact of CVE-2013-2564 is denial of service, leading to decreased performance or complete unavailability of the Mambo CMS.
Mitigation for CVE-2013-2564 involves restricting file uploads and implementing file type validation to prevent malicious files.
There is no official patch for CVE-2013-2564, so upgrading to a more secure version or implementing security measures is recommended.