Unrated severityNVD Advisory· Published Mar 16, 2004· Updated Apr 16, 2026
CVE-2004-1826
CVE-2004-1826
Description
SQL injection vulnerability in index.php in Mambo Open Source 4.5 stable 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected products
5cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:mambo:mambo_open_source_4.5:1.0.3beta:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- secunia.com/advisories/11140nvdPatchVendor Advisory
- www.osvdb.org/4307nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/9891nvdExploitVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/15500nvd
News mentions
0No linked articles in our index yet.