Date: 06/19/06 (Java Web) Keywords: sql, web rgod has discovered a vulnerability in Mambo & Joomla, which can be exploited to conduct SQL injection attacks. Input passed to the “Name” field when submitting a web link isn’t properly sanitised before being used in a SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code. The vulnerability has been confirmed [...] Source: http://blog.taragana.com/index.php/archive/mambo-joomla-sql-injection-vulnerability/
|