Vulnerability Description
A vulnerability in Mambo CMS v4.6.5 where the scripts thumbs.php, editorFrame.php, editor.php, images.php, manager.php discloses the root path of the webserver.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mambo-Foundation | Mambo Cms | 4.6.5 |
Related Weaknesses (CWE)
References
- http://sourceforge.net/projects/mambo/Product
- http://www.vapidlabs.com/advisory.php?v=75ExploitThird Party Advisory
- http://sourceforge.net/projects/mambo/Product
- http://www.vapidlabs.com/advisory.php?v=75ExploitThird Party Advisory
FAQ
What is CVE-2013-2565?
CVE-2013-2565 is a vulnerability with a CVSS score of 5.3 (MEDIUM). A vulnerability in Mambo CMS v4.6.5 where the scripts thumbs.php, editorFrame.php, editor.php, images.php, manager.php discloses the root path of the webserver.
How severe is CVE-2013-2565?
CVE-2013-2565 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-2565?
Check the references section above for vendor advisories and patch information. Affected products include: Mambo-Foundation Mambo Cms.