CVE-2008-2692
Joomla com_yvcomment <= 1.16.0 - SQL Injection via ArticleID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2692. PoCs published by His0k4.
AI-analyzed exploit summary This exploit targets a blind SQL injection vulnerability in the Joomla yvcomment component (CVE-2008-2692). It brute-forces the MD5 hash of the admin password by leveraging time-based or content-based SQL injection.
Description
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.
Exploits (1)
This exploit targets a blind SQL injection vulnerability in the Joomla yvcomment component (CVE-2008-2692). It brute-forces the MD5 hash of the admin password by leveraging time-based or content-based SQL injection.