CVE-2008-2692
Joomla Com Yvcomment - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.
Exploits (1)
References (4)
Scores
EPSS
0.0003
EPSS Percentile
7.5%
Details
CWE
CWE-89
Status
published
Products (16)
joomla/com_yvcomment
1.1
joomla/com_yvcomment
1.2
joomla/com_yvcomment
1.3
joomla/com_yvcomment
1.4
joomla/com_yvcomment
1.5
joomla/com_yvcomment
1.6
joomla/com_yvcomment
1.7
joomla/com_yvcomment
1.8
joomla/com_yvcomment
1.9
joomla/com_yvcomment
1.10
... and 6 more
Published
Jun 13, 2008
Tracked Since
Feb 18, 2026