CVE-2010-0694: SQL Injection
Published Feb 23, 2010
·Updated
SQL injection vulnerability in the PerchaGallery (comperchagallery) component before 1.5b for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an editunidad action to index.php.
Affected Software
4 affected components
Percha Com Perchagallery<=1.4
Joomla joomla
All of the following
Percha Com Perchagallery<=1.4
Joomla joomla
Event History
Feb 23, 2010
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
06:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·06:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0694?
CVE-2010-0694 is considered a critical vulnerability due to the potential for remote code execution via SQL injection.
2
What components are affected by CVE-2010-0694?
CVE-2010-0694 affects the PerchaGallery component versions prior to 1.5b for Joomla!.
3
How do I fix CVE-2010-0694?
To fix CVE-2010-0694, upgrade the PerchaGallery component to version 1.5b or later.
4
Can CVE-2010-0694 lead to data breaches?
Yes, CVE-2010-0694 can allow attackers to execute arbitrary SQL commands, potentially leading to data breaches.
5
What type of attack does CVE-2010-0694 facilitate?
CVE-2010-0694 facilitates SQL injection attacks through manipulation of the id parameter in an editunidad action.