First published: Tue Feb 12 2008(Updated: )
SQL injection vulnerability in index.php in the mosDirectory (com_directory) 2.3.2 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a viewcat action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla! Community Directory | =2.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0690 has a medium severity level due to the potential for arbitrary SQL command execution.
To fix CVE-2008-0690, you should upgrade to a later version of the com_directory component that addresses this vulnerability.
CVE-2008-0690 is an SQL injection vulnerability that allows attackers to manipulate SQL queries through user input.
CVE-2008-0690 specifically affects Joomla! com_directory version 2.3.2.
Yes, CVE-2008-0690 can be exploited remotely by attackers through the catid parameter.