CVE-2008-0517: SQL Injection
SQL injection vulnerability in index.php in the Darko Selesi EstateAgent (comestateagent) 0.1 component for Mambo 4.5.x and Joomla! allows remote attackers to execute arbitrary SQL commands via the objid parameter in a contact showObject action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0517?
CVE-2008-0517 is classified as a high severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2008-0517?
To fix CVE-2008-0517, update the Darko Selesi EstateAgent component to the latest version that addresses this vulnerability.
Who is affected by CVE-2008-0517?
CVE-2008-0517 affects users of the Darko Selesi EstateAgent 0.1 component on Mambo 4.5.x and Joomla! applications.
What type of attack does CVE-2008-0517 allow?
CVE-2008-0517 allows remote attackers to execute arbitrary SQL commands via the objid parameter.
Is CVE-2008-0517 easy to exploit?
Yes, CVE-2008-0517 can be easily exploited by a knowledgeable attacker due to the nature of the SQL injection vulnerability.