Vulnerabilities > CVE-2002-2290 - Credentials Management vulnerability in Mambo Site Server 4.0.11

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
mambo
CWE-255
critical

Summary

Mambo Site Server 4.0.11 installs with a default username and password of admin, which allows remote attackers to gain privileges.

Vulnerable Configurations

Part Description Count
Application
Mambo
1

Common Weakness Enumeration (CWE)