Blind SQL Injection Exploit

16 years 2 weeks ago #62119 by davros
Blind SQL Injection Exploit was created by davros
OK Found this is there a fix for it? It's dated 23-April-2008.


Joomla Component Profiler Blind SQL Injection
MOD EDIT: DO NOT POST exploits !

Post edited by: beat, at: 2008/05/02 16:24

Please Log in to join the conversation.

16 years 2 weeks ago #62126 by beat
Replied by beat on topic Re:Blind SQL Injection Exploit
DO NOT POST exploits ! had to edit your message...

This affects only CB <= 1.0.1 and with PHP setting magicgpcquotes OFF, so you would get a warning with Joomla > 1.0.11 too...

That's one of the reasons CB 1.0.2 got released over a year ago !

CB 1.0.2 and CB 1.1 are not vulnerable to this attack.

Please make sure to always have latest CB installed, specially if a release contains security fixes/improvements...

Post edited by: beat, at: 2008/05/02 16:27

Beat - Community Builder Team Member

Before posting on forums: Read FAQ thoroughly -- Help us spend more time coding by helping others in this forum, many thanks :)
CB links: Our membership - CBSubs - Templates - Hosting - Forge - Send me a Private Message (PM) only for private/confidential info

Please Log in to join the conversation.

Moderators: beatnantkrileon
Time to create page: 0.165 seconds

Facebook Twitter LinkedIn