Unrated severityNVD Advisory· Published Sep 18, 2004· Updated Jun 16, 2026
CVE-2004-1693
CVE-2004-1693
Description
PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:mambo:mambo:4.5_1.0.9:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mambo:mambo:4.5_1.0.9:*:*:*:*:*:*:*
- (no CPE)range: = 4.5 (1.0.9)
Patches
Vulnerability mechanics
References
5- www.osvdb.org/10180nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/11220nvdExploitVendor Advisory
- marc.infonvd
- securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/17449nvd
News mentions
0No linked articles in our index yet.