CVE-2008-6923: SQL Injection
SQL injection vulnerability in the content component (comcontent) 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a blogcategory action to index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6923?
CVE-2008-6923 has a high severity rating due to its SQL injection vulnerability, which can allow attackers to execute arbitrary SQL commands.
How do I fix CVE-2008-6923?
To fix CVE-2008-6923, upgrade the Joomla! component com_content to a version later than 1.0.0.
Who is affected by CVE-2008-6923?
CVE-2008-6923 affects users of Joomla! with the com_content component version 1.0.0.
What are the potential impacts of CVE-2008-6923?
The potential impacts of CVE-2008-6923 include unauthorized database access and manipulation, data theft, and disruption of service.
How can attackers exploit CVE-2008-6923?
Attackers can exploit CVE-2008-6923 by injecting malicious SQL commands through the Itemid parameter in a blogcategory action to index.php.