CVE-2008-0773

SQL injection vulnerability in Phil Taylor Comments (com_comments, aka Review Script) 0.5.8.5g and earlier component for Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:joomla:com_comments:*:*:*:*:*:*:*:*
cpe:2.3:a:mambo:com_comments:*:*:*:*:*:*:*:*
cpe:2.3:a:phil_taylor:comments:*:*:*:*:*:*:*:*
cpe:2.3:a:phil_taylor:review_script:*:*:*:*:*:*:*:*

Information

Published : 2008-02-13 16:00

Updated : 2017-09-28 18:30


NVD link : CVE-2008-0773

Mitre link : CVE-2008-0773


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

phil_taylor

  • review_script
  • comments

mambo

  • com_comments

joomla

  • com_comments