CVE-2013-2562: Mambo-Foundation Mambo CMS

Low severity, CVSS 2.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.

Affected products

Published 2014-06-09. Last modified 2026-06-16.