First published: Wed Feb 20 2008(Updated: )
SQL injection vulnerability in index.php in the Kemas Antonius com_quran 1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the surano parameter in a viewayat action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mambo Kemas Antonius Com Quran | <=1.1 | |
Joomla Kemas Antonius Com Quran | <=1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0832 is considered to have a high severity due to its potential for arbitrary SQL command execution.
To fix CVE-2008-0832, update the Kemas Antonius com_quran component to version 1.1 or later.
CVE-2008-0832 affects the Kemas Antonius com_quran component versions 1.1 and earlier for both Mambo and Joomla! platforms.
Yes, CVE-2008-0832 can be exploited remotely through crafted requests to the vulnerable application.
CVE-2008-0832 allows attackers to execute arbitrary SQL queries, which can lead to database manipulation and data exposure.