CVE-2008-3785: SQL Injection
Published Aug 26, 2008
·Updated
Multiple SQL injection vulnerabilities in the comcontent component in MiaCMS 4.6.5 allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) view, (2) category, or (3) blogsection action to index.php.
Affected Software
1 affected component
MiaCMS MiaCMS=4.6.5
Remediation
Patch Available
Event History
Aug 26, 2008
CVE Published
via MITRE·02:06 PM
Data Sourced
via MITRE·02:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3785?
CVE-2008-3785 is classified as a medium severity vulnerability due to its potential to allow remote SQL injection attacks.
2
How do I fix CVE-2008-3785?
To fix CVE-2008-3785, update to a patched version of MiaCMS that addresses the SQL injection vulnerabilities.
3
What systems are affected by CVE-2008-3785?
CVE-2008-3785 affects MiaCMS version 4.6.5.
4
What kind of attacks can be executed due to CVE-2008-3785?
CVE-2008-3785 allows remote attackers to execute arbitrary SQL commands through specific parameters.
5
Is CVE-2008-3785 a local or remote vulnerability?
CVE-2008-3785 is a remote vulnerability that can be exploited by attackers without physical access to the system.