CVE-2008-6653
Wh-com Com Webhosting < 1.1 - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in webhosting.php in the Webhosting Component (com_webhosting) module before 1.1 RC7 for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.
Exploits (1)
References (5)
Scores
EPSS
0.0020
EPSS Percentile
42.2%
Details
CWE
CWE-89
Status
published
Products (9)
wh-com/com_webhosting
0.5 beta
wh-com/com_webhosting
0.5.3 beta
wh-com/com_webhosting
0.5.4 beta
wh-com/com_webhosting
0.5.5 beta
wh-com/com_webhosting
0.5.6 beta
wh-com/com_webhosting
1.0 stable
wh-com/com_webhosting
1.0.1 stable
wh-com/com_webhosting
1.1 alpha (7 CPE variants)
wh-com/com_webhosting
< 1.1
Published
Apr 07, 2009
Tracked Since
Feb 18, 2026