First published: Fri Feb 12 2010(Updated: )
SQL injection vulnerability in the Parkview Consultants SimpleFAQ (com_simplefaq) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a display action to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Parkview Consultants SimpleFAQ | ||
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2010-0632 is considered high due to the potential for remote attackers to execute arbitrary SQL commands.
To fix CVE-2010-0632, you should update the Parkview Consultants SimpleFAQ component to the latest version that addresses this SQL injection vulnerability.
CVE-2010-0632 affects the Parkview Consultants SimpleFAQ component specifically used within Joomla! installations.
CVE-2010-0632 allows remote attackers to perform SQL injection attacks by manipulating the catid parameter in requests.
Yes, a patch is available in newer versions of the Parkview Consultants SimpleFAQ component that resolves the vulnerability.