CVE-2009-4650
Webee Comments (com_webeecomment) 1.1.1, 1.2, 2.0 - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-4650. PoCs published by Jeff Channell.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in the Joomla! Webee component, allowing an attacker to extract database information such as the version. The vulnerability arises from insufficient input sanitization in the 'articleId' parameter.
Description
SQL injection vulnerability in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a default action to index2.php. NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in the Joomla! Webee component, allowing an attacker to extract database information such as the version. The vulnerability arises from insufficient input sanitization in the 'articleId' parameter.