CVE-2008-6429: SQL Injection
Published Mar 6, 2009
·Updated
SQL injection vulnerability in the PrayerCenter (comprayercenter) component 1.4.9 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewrequest action to index2.php.
Affected Software
4 affected components
Joomla joomla
Mike Leeper Com Prayercenter<=1.4.9
All of the following
Joomla joomla
Mike Leeper Com Prayercenter<=1.4.9
Event History
Mar 6, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
06:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·06:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6429?
CVE-2008-6429 has a severity rating of high, with a CVSS score of 7.5.
2
How can I fix CVE-2008-6429?
To fix CVE-2008-6429, update the PrayerCenter component to the latest version beyond 1.4.9.
3
What type of vulnerability is CVE-2008-6429?
CVE-2008-6429 is an SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
4
Which Joomla! component is affected by CVE-2008-6429?
CVE-2008-6429 affects the PrayerCenter component, specifically version 1.4.9 and earlier.
5
What parameters are involved in the exploitation of CVE-2008-6429?
The id parameter in the view_request action to index2.php is exploited in CVE-2008-6429.