First published: Sat Dec 15 2007(Updated: )
SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an inline page action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla RS Gallery 2 | =beta_5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6362 is classified as a high severity SQL injection vulnerability.
To fix CVE-2007-6362, upgrade to a patched version of the RSGallery component for Mambo and Joomla!.
CVE-2007-6362 affects the RSGallery (com_rsgallery) 2.0 beta 5 and earlier versions.
Yes, CVE-2007-6362 can allow remote attackers to execute arbitrary SQL commands.
The catid parameter in index.php is exploited in CVE-2007-6362 for SQL injection attacks.