Backup E-mails!   Data Recovery   Avast Antivirus Pro!

The ‘Candle’ component for Joomla! and Mambo is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.

Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

This issue affects Candle 1.0.0; other versions may also be vulnerable.



Author:
ITAdvisor
Time:
Wednesday, March 12th, 2008 at 1:14 pm
Category:
I.T. News, Internet Community, Vulnerabilities DataBase, web 2.0
Comments:
You can leave a response, or trackback from your own site.
RSS:
You can follow any responses to this entry through the RSS 2.0 feed.
Navigation:

Leave a Reply

You must be logged in to post a comment.