Vulnerabilities
Vulnerable Software
Mambo:  Security Vulnerabilities
Mambo Site Server 4.0.11 allows remote attackers to obtain the physical path of the server via an HTTP request to index.php with a parameter that does not exist, which causes the path to be leaked in an error message.
CVSS Score
5.0
EPSS Score
0.023
Published
2002-12-31
Mambo Site Server 4.0.11 installs with a default username and password of admin, which allows remote attackers to gain privileges.
CVSS Score
10.0
EPSS Score
0.008
Published
2002-12-31
index2.php in Mambo Site Server 3.0.0 through 3.0.5 allows remote attackers to gain Mambo administrator privileges by setting the PHPSESSID parameter and providing the appropriate administrator information in other parameters.
CVSS Score
10.0
EPSS Score
0.017
Published
2001-07-25


Contact Us

Shodan ® - All rights reserved