CVE-2008-6481: SQL Injection
Published Mar 17, 2009
·Updated
SQL injection vulnerability in the Versioning component (comversioning) 1.0.2 in Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task to index.php.
Affected Software
6 affected components
Joomla joomla
Mambo-foundation Mambo
Joomprod Com Versioning=1.0.2
All of the following
Any of the following
Joomla joomla
Mambo-foundation Mambo
Joomprod Com Versioning=1.0.2
Event History
Mar 17, 2009
CVE Published
via MITRE·07:12 PM
Data Sourced
via MITRE·07:12 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·07:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6481?
CVE-2008-6481 is classified as a high severity SQL injection vulnerability.
2
How do I fix CVE-2008-6481?
To fix CVE-2008-6481, upgrade the Joomprod Com Versioning component to a version newer than 1.0.2.
3
What software is affected by CVE-2008-6481?
CVE-2008-6481 affects the Joomprod Com Versioning component version 1.0.2 in Joomla! and Mambo.
4
Can CVE-2008-6481 be exploited remotely?
Yes, CVE-2008-6481 can be exploited remotely by attackers to execute arbitrary SQL commands.
5
What type of vulnerability is CVE-2008-6481?
CVE-2008-6481 is an SQL injection vulnerability that allows unauthorized SQL queries to be executed.