CVE-2008-0846: SQL Injection
SQL injection vulnerability in index.php in the comprofile component for Joomla! allows remote attackers to execute arbitrary SQL commands via the oid parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0846?
CVE-2008-0846 has a severity rating that indicates a high risk due to the potential for arbitrary SQL command execution.
How do I fix CVE-2008-0846?
To mitigate CVE-2008-0846, update the com_profile component in your Joomla or Mambo installation to the latest version that addresses the SQL injection vulnerability.
What systems are affected by CVE-2008-0846?
CVE-2008-0846 affects Joomla and Mambo installations using the com_profile component.
Can CVE-2008-0846 be exploited remotely?
Yes, CVE-2008-0846 can be exploited remotely by attackers through the oid parameter in index.php.
What kind of attack is possible with CVE-2008-0846?
CVE-2008-0846 allows attackers to execute arbitrary SQL commands, which can lead to data compromise or unauthorized access.