First published: Fri Jun 06 2008(Updated: )
SQL injection vulnerability in the EasyBook (com_easybook) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gbid parameter in a deleteentry action to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Easybook Component | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2569 is considered a high severity vulnerability due to its potential for executing arbitrary SQL commands.
CVE-2008-2569 allows remote attackers to exploit the EasyBook component to manipulate the database through SQL injection.
To fix CVE-2008-2569, update the EasyBook component to the latest version or apply the necessary patches provided by Joomla!
Users of the EasyBook component version 1.1 for Joomla! are affected by CVE-2008-2569.
In CVE-2008-2569, the gbid parameter is used in the deleteentry action, which is vulnerable to SQL injection.