First published: Fri Nov 21 2008(Updated: )
SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | ||
Joomla | ||
Mambo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5200 is considered a critical vulnerability due to its potential to allow arbitrary SQL commands execution.
To fix CVE-2008-5200, it is recommended to update the Xe webtv component to the latest version or apply any available security patches.
CVE-2008-5200 affects the Xe webtv component for Joomla! versions that do not include the necessary security updates.
CVE-2008-5200 is classified as an SQL injection vulnerability, which allows attackers to manipulate database queries.
Yes, CVE-2008-5200 can be exploited remotely by attackers through the id parameter in a detail action to index.php.