CVE-2008-0800 Information

Description

SQL injection vulnerability in index.php in the McQuiz (com_mcquiz) 0.9 Final component for Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a user_tst_shw action.

Reference

http://secunia.com/advisories/28940 http://www.securityfocus.com/bid/27809 https://www.exploit-db.com/exploits/5118

Share on: