CVE-2013-2562: Mambo-Foundation Mambo CMS
Low severity, CVSS 2.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.
Affected products
- Mambo-Foundation Mambo CMS: version 4.6.5 only
Published 2014-06-09. Last modified 2026-06-16.