CVE-2004-2143 Information

Description

SQL injection vulnerability in the ReMOSitory Server add-on module to Mambo Portal 4.5.1 (1.09) and earlier allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in the com_remository option.

Reference

http://archives.neohapsis.com/archives/bugtraq/2004-09/0215.html http://archives.neohapsis.com/archives/bugtraq/2004-09/0249.html http://secunia.com/advisories/12597/ http://securitytracker.com/id?1011356 http://www.mamboportal.com/content/view/1615/ http://www.osvdb.org/10040 http://www.securityfocus.com/bid/11219 https://exchange.xforce.ibmcloud.com/vulnerabilities/17441

Share on: