Joomla! Fabrik Component Unspecified SQL Injection Vulnerability
BID:48661
Info
Joomla! Fabrik Component Unspecified SQL Injection Vulnerability
| Bugtraq ID: | 48661 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 12 2011 12:00AM |
| Updated: | Jul 12 2011 12:00AM |
| Credit: | Jeff Channell |
| Vulnerable: |
Fabrik Fabrik 2.0 |
| Not Vulnerable: |
Fabrik Fabrik 2.1 |
Discussion
Joomla! Fabrik Component Unspecified SQL Injection Vulnerability
The Fabrik component for Joomla! is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Fabrik versions prior to 2.1 are affected.
The Fabrik component for Joomla! is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Fabrik versions prior to 2.1 are affected.
References
Joomla! Fabrik Component Unspecified SQL Injection Vulnerability
References:
References:
- Fabrik 2.1 released (Fabrik)
- Fabrik Homepage (Fabrik)
- Joomla! Homepage (Joomla!)