CVE-2008-4777: SQL Injection
SQL injection vulnerability in the Showroom Joomlearn LMS (comlms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showTests task.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4777?
CVE-2008-4777 is classified as a high severity SQL injection vulnerability that can allow remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2008-4777?
To fix CVE-2008-4777, upgrade to a version of the Showroom Joomlearn LMS component that has patched this vulnerability.
What software is affected by CVE-2008-4777?
CVE-2008-4777 affects the Showroom Joomlearn LMS component for Joomla! and Mambo.
Can I continue using Joomla! if it has the com_lms component affected by CVE-2008-4777?
It is not advisable to continue using Joomla! with the affected com_lms component until it is patched to prevent SQL injection.
What kind of attacks can exploit CVE-2008-4777?
CVE-2008-4777 can be exploited by attackers to gain unauthorized access to the database and execute malicious SQL queries.