Mambo Site Server Administrator...

- AV AC AU C I A
发布: 2001-07-25
修订: 2025-04-13

Mambo Site Server is a PHP- and MySQL-based tool for website content management and administration. Versions of Mambo Site Server make insecure use of global variables in URLS used to authenticate a remote Mambo administrator through HTTP. This flaw allows any user to access the Mambo Server's administration functions which can lead to compromises of the site's function, confidentiality of data, and potentially allow a hostile user to obtain sensitive information which could be used to further compromise the host.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息