First published: Wed Feb 06 2008(Updated: )
SQL injection vulnerability in index.php in the Sigsiu Online Business Index 2 (SOBI2, com_sobi2) 2.5.3 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla! with SOBI2 | ||
Mambo | ||
Sobi2 | =2.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0607 has been classified as a medium severity SQL injection vulnerability.
To fix CVE-2008-0607, upgrade the Sigsiu Online Business Index to the latest version or apply any available patches.
CVE-2008-0607 affects Joomla! and Mambo installations using the com_sobi2 component version 2.5.3.
Yes, CVE-2008-0607 allows remote attackers to execute arbitrary SQL commands, potentially compromising database security.
While CVE-2008-0607 may not be actively exploited now, systems still using unpatched versions are vulnerable to attacks.