Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mambo_open_source_4.5 | Mambo | 1.0.0 (including) | 1.0.0 (including) |
Mambo_open_source_4.5 | Mambo | 1.0.1 (including) | 1.0.1 (including) |
Mambo_open_source_4.5 | Mambo | 1.0.2 (including) | 1.0.2 (including) |
Mambo_open_source_4.5 | Mambo | 1.0.3 (including) | 1.0.3 (including) |
Mambo_open_source_4.5 | Mambo | 1.0.3_beta (including) | 1.0.3_beta (including) |
Mambo_open_source_4.5 | Mambo | 1.0.9 (including) | 1.0.9 (including) |