Vulnerabilities > Mambo > COM DOC > High

DATE CVE VULNERABILITY TITLE RISK
2008-02-14 CVE-2008-0772 SQL Injection vulnerability in multiple products
SQL injection vulnerability in index.php in the com_doc component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the sid parameter in a view task.
network
low complexity
joomla mambo CWE-89
7.5