CVE-2008-6182: SQL Injection
Published Feb 19, 2009
·Updated
SQL injection vulnerability in the Ignite Gallery (comignitegallery) component 0.8.0 through 0.8.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gallery parameter in a view action to index.php.
Affected Software
10 affected components
Joomla ignitegallery=0.8.0
Joomla ignitegallery=0.8.1
Joomla ignitegallery=0.8.2
Joomla ignitegallery=0.8.3
Joomla Joomla\!
All of the following
Any of the following
Joomla ignitegallery=0.8.0
Joomla ignitegallery=0.8.1
Joomla ignitegallery=0.8.2
Joomla ignitegallery=0.8.3
Joomla Joomla\!
Event History
Feb 19, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
06:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·06:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6182?
CVE-2008-6182 is considered a critical vulnerability due to its potential to allow remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2008-6182?
To fix CVE-2008-6182, you should update the Ignite Gallery component to version 0.8.4 or later.
3
Which versions of Ignite Gallery are affected by CVE-2008-6182?
Ignite Gallery versions 0.8.0 to 0.8.3 are affected by CVE-2008-6182.
4
What type of vulnerability is CVE-2008-6182?
CVE-2008-6182 is an SQL injection vulnerability.
5
Can CVE-2008-6182 be exploited remotely?
Yes, CVE-2008-6182 can be exploited remotely by attackers.