CVE-2013-2562
Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0007 (0.1%)
Percentil: 22.0%
EPSS: 2026-05-06
Afecta
mambo-foundation:mambo_cmsDescripción técnica
Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.
Publicada: 9/6/2014, 19:55:09
Última modificación: 6/5/2026, 22:30:45
Referencias
- http://packetstormsecurity.com/files/108462/mambocms465-permdosdisclose.txt
- http://seclists.org/oss-sec/2013/q1/689
- http://www.vapid.dhs.org/advisories/mambo_cms_4.6.5.html
- http://packetstormsecurity.com/files/108462/mambocms465-permdosdisclose.txt
- http://seclists.org/oss-sec/2013/q1/689
- http://www.vapid.dhs.org/advisories/mambo_cms_4.6.5.html