CVE-2008-3225: Critical severity joomla vulnerability
Published Jul 18, 2008
·Updated
Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."
Affected Software
24 affected components
Joomla joomla=1.0.13
Joomla joomla=1.0.9
Joomla joomla=1.5
Joomla joomla=1.5.0_rc1
Joomla joomla=1.5.0_beta2
Joomla joomla=1.0
Joomla joomla=1.5.2
Joomla joomla=1.0.1
Joomla joomla=1.0.3
Joomla joomla=1.0.6
Joomla joomla=1.0.8
Joomla joomla=1.0.4
Joomla joomla=1.0.2
Joomla joomla=1.5.0_beta
Joomla joomla=1.0.10
Joomla joomla=1.5.0_beta1
Joomla joomla=1.5.1
Joomla joomla=1.0.12
Joomla joomla=1.03
Joomla joomla=1.0.5
Joomla joomla=1.0.7
Joomla joomla=1.0.0
Joomla joomla<=1.5.3
Joomla joomla=1.0.11
Remediation
Patch Available
Event History
Jul 18, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3225?
CVE-2008-3225 is classified as a medium severity vulnerability.
2
How do I fix CVE-2008-3225?
To fix CVE-2008-3225, upgrade Joomla! to version 1.5.4 or later.
3
What versions of Joomla! are affected by CVE-2008-3225?
CVE-2008-3225 affects Joomla! versions 1.0.x and 1.5.x prior to 1.5.4.
4
What type of vulnerability is CVE-2008-3225?
CVE-2008-3225 is an access control vulnerability that allows unauthorized access to administration features.
5
What impact does CVE-2008-3225 have on my Joomla! site?
The impact of CVE-2008-3225 includes potential unauthorized administrative access, which may lead to further exploitation.