CVE-2007-5177 (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5177): SQL injection vulnerability in index.php in the MambAds (com_mambads) 1.5 and earlier component for Mambo allows remote attackers to execute arbitrary SQL commands via the caid parameter.
Web-apps, do we ship this component (or is it included by default)? Please advise.
Hmm I think we don't ship external components, but I'll let web-apps confirm this before closing.
com_mambads is not included. web-apps done here.
(In reply to comment #3) > com_mambads is not included. web-apps done here. > ok, so closing.