First published: Mon Oct 20 2008(Updated: )
SQL injection vulnerability in the actualite module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pyxicom actualite | =1.0 | |
Joomla | ||
Mambo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-4617 is considered high due to its potential for remote exploitation via SQL injection.
To fix CVE-2008-4617, update the actualite module to a version that addresses the SQL injection vulnerability.
The attack vector for CVE-2008-4617 involves sending specially crafted SQL commands through the 'id' parameter in the actualite module.
Yes, if you are using the actualite module version 1.0 in Joomla!, your installation is vulnerable to CVE-2008-4617.
The potential impacts of CVE-2008-4617 include unauthorized access to the database, data manipulation, and exposure of sensitive information.