CVE-2002-2247

Severity CVSS v4.0:
Pending analysis
Type:
CWE-16 Configuration Errors
Publication date:
31/12/2002
Last modified:
03/04/2025

Description

The administrator/phpinfo.php script in Mambo Site Server 4.0.11 allows remote attackers to obtain sensitive information such as the full web root path via phpinfo.php, which calls the phpinfo function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mambo:mambo_site_server:4.0.11:*:*:*:*:*:*:*