CVE-2008-2701: SQL Injection
Published Jun 13, 2008
·Updated
SQL injection vulnerability in the GameQ (comgameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a page action to index.php.
Affected Software
1 affected component
Joomla Com Gameq=4.0
Event History
Jun 13, 2008
CVE Published
via MITRE·07:19 PM
Data Sourced
via MITRE·07:19 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2701?
CVE-2008-2701 is classified as a medium severity vulnerability due to its potential for allowing remote SQL command execution.
2
How do I fix CVE-2008-2701?
To fix CVE-2008-2701, update to a patched version of the GameQ component that's later than version 4.0.
3
What kind of attacks can be performed using CVE-2008-2701?
CVE-2008-2701 allows attackers to perform SQL injection attacks, potentially compromising the database.
4
Which versions are affected by CVE-2008-2701?
CVE-2008-2701 affects version 4.0 and earlier of the GameQ component for Joomla!.
5
Is CVE-2008-2701 still a threat today?
While CVE-2008-2701 primarily affects older Joomla! versions, any system still using these should consider it a threat.