Release date: 2012-09-06
Updated on:
Affected Systems:
Joomla! Kun ENA 2.0
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52636
Cve id: CVE-2012-4868
Joomla! Is an Open Source Content Management System (CMS ).
Joomla! The news. php In Kunena component 1.7.2 has the SQL injection vulnerability, which allows remote attackers to execute arbitrary SQL commands using the id parameter.
<* Source: Cyber-Assassins
Link: http://web.nvd.nist.gov/view/vuln/detail? VulnId = CVE-2012-4868
Http://web.nvd.nist.gov/view/vuln/detail? VulnId = CVE-2012-4868
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Joomla!
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.joomla.org/