CVE-2008-2701
Joomla com_gameq <= 4.0 - SQL Injection via category_id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2701. PoCs published by His0k4.
AI-analyzed exploit summary This is a proof-of-concept for a SQL injection vulnerability in the Joomla GameQ component. It demonstrates how an attacker can exploit the 'category_id' parameter to extract sensitive information from the database, such as user credentials.
Description
SQL injection vulnerability in the GameQ (com_gameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a page action to index.php.
Exploits (1)
This is a proof-of-concept for a SQL injection vulnerability in the Joomla GameQ component. It demonstrates how an attacker can exploit the 'category_id' parameter to extract sensitive information from the database, such as user credentials.