Vulnerabilities > Mambo Foundation > Mambo CMS > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-02-12 CVE-2011-2499 Cross-site Scripting vulnerability in Mambo-Foundation Mambo CMS
Mambo CMS through 4.6.5 has multiple XSS.
4.3
2019-02-15 CVE-2013-2565 Path Traversal vulnerability in Mambo-Foundation Mambo CMS 4.6.5
A vulnerability in Mambo CMS v4.6.5 where the scripts thumbs.php, editorFrame.php, editor.php, images.php, manager.php discloses the root path of the webserver.
network
low complexity
mambo-foundation CWE-22
5.0
2014-06-09 CVE-2013-2564 Resource Management Errors vulnerability in Mambo-Foundation Mambo CMS 4.6.5
Mambo CMS 4.6.5 allows remote attackers to cause a denial of service (memory and bandwidth consumption) by uploading a crafted file.
network
low complexity
mambo-foundation CWE-399
5.0