CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.6. It may be remotely exploitable.
CVE
CVE-2005-3738
Severity
LOW
CVSS
2.6
EPSS
3.56%
Original NVD Description
globals.php in Mambo Site Server 4.0.14 and earlier, when register_globals is disabled, allows remote attackers to overwrite variables in the GLOBALS array and conduct various attacks, as demonstrated using the mosConfig_absolute_path parameter to content.html.php for remote PHP file inclusion.