First published: Mon Jan 18 2010(Updated: )
SQL injection vulnerability in the Joomloc (com_joomloc) component 1.0 for Joomla allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | =1.0 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4620 is considered to have a medium severity rating due to its potential for SQL injection, which can lead to unauthorized database access.
To fix CVE-2009-4620, update the Joomloc component to a version that has addressed this SQL injection vulnerability.
Any Joomla users utilizing the Joomloc component version 1.0 are affected by CVE-2009-4620.
CVE-2009-4620 allows remote attackers to execute arbitrary SQL commands, which can compromise the database.
Yes, a patch or update is available that addresses the SQL injection vulnerability in the Joomloc component.