content.php in Mambo 4.5.2 through 4.5.2.3 allows remote attackers to obtain the installation path of the application via a URL that causes the application to return an error.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mambo | Mambo | 4.5.2 (including) | 4.5.2 (including) |
Mambo | Mambo | 4.5.2.1 (including) | 4.5.2.1 (including) |
Mambo | Mambo | 4.5.2.2 (including) | 4.5.2.2 (including) |
Mambo | Mambo | 4.5.2.3 (including) | 4.5.2.3 (including) |