First published: Tue Mar 27 2007(Updated: )
SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Car Manager | <=1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1704 has a medium severity rating due to the potential for SQL injection attacks.
To fix CVE-2007-1704, upgrade to a later version of the Car Manager component for Joomla! that addresses this vulnerability.
CVE-2007-1704 affects the Car Manager component for Joomla! versions 1.1 and earlier.
Yes, CVE-2007-1704 can be exploited remotely by attackers manipulating the id parameter.
CVE-2007-1704 allows attackers to execute arbitrary SQL commands, potentially compromising your database and website security.