CVE-2007-6362 Information

Description

SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an inline page action.

Reference

http://advisories.echo.or.id/adv/adv86-K-159-2007.txt http://www.securityfocus.com/archive/1/484606/100/100/threaded http://www.securityfocus.com/bid/26704 https://www.exploit-db.com/exploits/4691

Share on: