Vulnerabilities > CVE-2007-0374 - SQL Injection vulnerability in Mambo/Joomla CMS ID

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
joomla
mambo
nessus

Summary

SQL injection vulnerability in (1) Joomla! 1.0.11 and 1.5 Beta, and (2) Mambo 4.6.1, allows remote attackers to execute arbitrary SQL commands via the id parameter when cancelling content editing.

Vulnerable Configurations

Part Description Count
Application
Joomla
2
Application
Mambo
1

Nessus

NASL familyFreeBSD Local Security Checks
NASL idFREEBSD_PKG_8A5770B454B511DBA5AE00508D6A62DF.NASL
descriptionJames Bercegay reports : Mambo is vulnerable to an Authentication Bypass issue that is due to a SQL Injection in the login function. The SQL Injection is possible because the $passwd variable is only sanitized when it is not passed as an argument to the function. Omid reports : There are several sql injections in Mambo 4.6 RC2 & Joomla 1.0.10 (and maybe other versions) : - When a user edits a content, the
last seen2020-06-01
modified2020-06-02
plugin id55439
published2011-06-28
reporterThis script is Copyright (C) 2011-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/55439
titleFreeBSD : mambo -- multiple SQL injection vulnerabilities (8a5770b4-54b5-11db-a5ae-00508d6a62df)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/54195/joomla150beta-sql.txt
idPACKETSTORM:54195
last seen2016-12-05
published2007-02-06
reporterOmid
sourcehttps://packetstormsecurity.com/files/54195/joomla150beta-sql.txt.html
titlejoomla150beta-sql.txt