VYPR
Unrated severityNVD Advisory· Published Sep 18, 2004· Updated Jun 16, 2026

CVE-2004-1693

CVE-2004-1693

Description

PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:mambo:mambo:4.5_1.0.9:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:mambo:mambo:4.5_1.0.9:*:*:*:*:*:*:*
    • (no CPE)range: = 4.5 (1.0.9)

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.