CVE-2008-6430: SQL Injection
Published Mar 6, 2009
·Updated
SQL injection vulnerability in the MyContent (commycontent) component 1.1.13 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.
Affected Software
4 affected components
Joomla Com Mycontent=1.1.13
Joomla joomla
All of the following
Joomla Com Mycontent=1.1.13
Joomla joomla
Event History
Mar 6, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
06:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·06:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6430?
CVE-2008-6430 is classified as a high severity SQL injection vulnerability.
2
How do I fix CVE-2008-6430?
To fix CVE-2008-6430, update the MyContent component to a version above 1.1.13 that has addressed this vulnerability.
3
What software is affected by CVE-2008-6430?
CVE-2008-6430 affects the MyContent (com_mycontent) component version 1.1.13 for Joomla!.
4
Can CVE-2008-6430 allow for remote code execution?
CVE-2008-6430 can potentially allow remote attackers to execute arbitrary SQL commands, which may lead to further exploitation.
5
Is there a workaround for CVE-2008-6430?
As a temporary workaround for CVE-2008-6430, you can restrict access to the affected component until a patch is applied.