CVE-2008-0561: SQL Injection
Published Feb 4, 2008
·Updated
SQL injection vulnerability in index.php in the Arthur Konze AkoGallery (comakogallery) 2.5 beta component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.
Affected Software
3 affected components
Mambo Mambo
Arthur Konze Webdesign Akogallery=2.5_beta
Joomla joomla
Event History
Feb 4, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0561?
CVE-2008-0561 is considered a high severity vulnerability due to its potential for arbitrary SQL command execution.
2
How do I fix CVE-2008-0561?
To fix CVE-2008-0561, update the AkoGallery component to a version that is not affected or implement rigorous input validation.
3
What systems are affected by CVE-2008-0561?
CVE-2008-0561 affects AkoGallery 2.5 beta component on Joomla and Mambo platforms.
4
What type of vulnerability is CVE-2008-0561?
CVE-2008-0561 is classified as an SQL injection vulnerability.
5
Can CVE-2008-0561 be exploited remotely?
Yes, CVE-2008-0561 can be exploited remotely by attackers through the manipulated id parameter.