CVE-2008-0721: SQL Injection
Published Feb 12, 2008
·Updated
SQL injection vulnerability in index.php in the Sermon (comsermon) 0.2 component for Mambo allows remote attackers to execute arbitrary SQL commands via the gid parameter.
Affected Software
1 affected component
Mambo Com Sermon=0.2
Event History
Feb 12, 2008
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0721?
CVE-2008-0721 has a high severity rating as it allows remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2008-0721?
To fix CVE-2008-0721, you should update the Sermon component to a version that is not susceptible to SQL injection vulnerabilities.
3
What software is affected by CVE-2008-0721?
CVE-2008-0721 specifically affects the Sermon component version 0.2 for Mambo.
4
What type of vulnerability is CVE-2008-0721?
CVE-2008-0721 is classified as an SQL injection vulnerability allowing manipulation and execution of SQL queries.
5
Can CVE-2008-0721 be exploited remotely?
Yes, CVE-2008-0721 can be exploited remotely by attackers through the gid parameter.