CVE-2008-0839: SQL Injection
Published Feb 20, 2008
·Updated
SQL injection vulnerability in refer.php in the astatsPRO (comastatspro) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected Software
2 affected components
aStats astatsPRO=1.0
Joomla Com Astatspro=1.0
Event History
Feb 20, 2008
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0839?
CVE-2008-0839 is classified as a critical severity vulnerability due to its potential for remote SQL injection attacks.
2
How do I fix CVE-2008-0839?
To fix CVE-2008-0839, update the astatsPRO component for Joomla! to the latest version that addresses this SQL injection vulnerability.
3
What software is affected by CVE-2008-0839?
CVE-2008-0839 affects astatsPRO version 1.0 for Joomla!.
4
What type of attack does CVE-2008-0839 allow?
CVE-2008-0839 allows remote attackers to execute arbitrary SQL commands through the id parameter.
5
Is CVE-2008-0839 exploitable without authentication?
Yes, CVE-2008-0839 can be exploited by unauthenticated remote attackers.