CVE-2007-4502: SQL Injection
Published Aug 23, 2007
·Updated
SQL injection vulnerability in index.php in the BibTeX component (comjombib) 1.3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the afilter parameter.
Affected Software
1 affected component
Joomla BibTeX<=1.3
Event History
Aug 23, 2007
CVE Published
07:17 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4502?
CVE-2007-4502 is considered a medium severity vulnerability that allows SQL injection.
2
How do I fix CVE-2007-4502?
To fix CVE-2007-4502, upgrade the BibTeX component to version 1.4 or later.
3
What software is affected by CVE-2007-4502?
CVE-2007-4502 affects Joomla! installations with the BibTeX component version 1.3 and earlier.
4
What type of attack does CVE-2007-4502 enable?
CVE-2007-4502 enables remote attackers to execute arbitrary SQL commands on a vulnerable Joomla! site.
5
When was CVE-2007-4502 reported?
CVE-2007-4502 was reported in 2007 and is part of a collection of SQL injection vulnerabilities.