CVE-2008-1297 Information

Description

SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action.

Reference

http://secunia.com/advisories/29292 http://www.securityfocus.com/bid/28179 https://exchange.xforce.ibmcloud.com/vulnerabilities/41072 https://www.exploit-db.com/exploits/5226

Share on: