CVE-2003-1245

Mambo 4.0.12 - Auth Bypass

Title source: llm

Description

index2.php in Mambo 4.0.12 allows remote attackers to gain administrator access via a URL request where session_id is set to the MD5 hash of a session cookie.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Simen Bergo · phpwebappsphp
https://www.exploit-db.com/exploits/22281

Scores

EPSS 0.0533
EPSS Percentile 90.1%

Details

Status published
Published Dec 31, 2003
Tracked Since Feb 18, 2026