First published: Tue Mar 07 2006(Updated: )
Multiple SQL injection vulnerabilities in the Admin functionality in Joomla! 1.0.7 and earlier allow remote authenticated administrators to execute arbitrary SQL commands via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | <=1.0.7 | |
Joomla | =1.0.0 | |
Joomla | =1.0.1 | |
Joomla | =1.0.2 | |
Joomla | =1.0.3 | |
Joomla | =1.0.4 | |
Joomla | =1.0.5 | |
Joomla | =1.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1049 is considered a high severity vulnerability due to the potential for remote authenticated administrators to execute arbitrary SQL commands.
To fix CVE-2006-1049, upgrade to a version of Joomla! later than 1.0.7 that has addressed the SQL injection vulnerabilities.
CVE-2006-1049 affects Joomla! version 1.0.7 and all earlier versions.
Administrators using affected versions of Joomla! 1.0.7 and earlier are at risk for CVE-2006-1049.
CVE-2006-1049 can be exploited through SQL injection attacks that allow execution of arbitrary SQL commands.