2 results (0.003 seconds)
CVSS: 9.4EPSS: 0%CPEs: 6EXPL: 0
CVSS: 9.8EPSS: 0%CPEs: 5EXPL: 3

CVE-2005-4156
https://notcve.org/view.php?id=CVE-2005-4156
11 Dec 2005 — Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character. • http://securitytracker.com/alerts/2005/Nov/1015176.html •

CVE-2004-1826 – Mambo Open Source 4.5 - 'index.php' SQL Injection
https://notcve.org/view.php?id=CVE-2004-1826
16 Mar 2004 — SQL injection vulnerability in index.php in Mambo Open Source 4.5 stable 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. • https://www.exploit-db.com/exploits/23834 •