CVE-2008-1427: SQL Injection
Published Mar 20, 2008
·Updated
SQL injection vulnerability in the Joobi Acajoom (comacajoom) 1.1.5 and 1.2.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mailingid parameter in a mailing view action to index.php.
Affected Software
4 affected components
Joomla Com Acajoom=1.2.5
Joobi Acajoom=1.1.5
Joomla Com Acajoom=1.1.5
Joobi Acajoom=1.2.5
Event History
Mar 20, 2008
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1427?
CVE-2008-1427 is considered a critical vulnerability due to its potential for remote SQL injection attacks.
2
How do I fix CVE-2008-1427?
To fix CVE-2008-1427, you should update the Joobi Acajoom component to the latest version available or apply any provided security patches.
3
What are the affected versions of CVE-2008-1427?
CVE-2008-1427 affects Joobi Acajoom versions 1.1.5 and 1.2.5.
4
What type of attack can CVE-2008-1427 facilitate?
CVE-2008-1427 can facilitate remote attackers in executing arbitrary SQL commands on the affected systems.
5
Is CVE-2008-1427 limited to specific CMS platforms?
Yes, CVE-2008-1427 is specifically related to the Joomla! CMS platform through the Joobi Acajoom component.