CVE-2009-2102: SQL Injection
SQL injection vulnerability in the Jumi (comjumi) component 2.0.3 and possibly other versions for Joomla allows remote attackers to execute arbitrary SQL commands via the fileid parameter to index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2102?
CVE-2009-2102 has a medium severity rating as it allows remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2009-2102?
To fix CVE-2009-2102, you should upgrade the Jumi component to a patched version that addresses this SQL injection vulnerability.
What versions are affected by CVE-2009-2102?
CVE-2009-2102 affects version 2.0.3 of the Jumi component and potentially other earlier versions.
What type of vulnerability is CVE-2009-2102?
CVE-2009-2102 is classified as an SQL injection vulnerability that can be exploited through the fileid parameter.
Can I still use Joomla if I have CVE-2009-2102?
You can continue to use Joomla, but you must ensure that the Jumi component is updated to avoid the risk associated with CVE-2009-2102.