1 results (0.008 seconds)
CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 2
CVE-2018-12254 – Joomla! Component Ek Rishta 2.10 - SQL Injection
https://notcve.org/view.php?id=CVE-2018-12254
router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_user/Sent%20interest/ URI. router.php en el componente Harmis Ek rishta (también conocido como ek-rishta) 2.10 para Joomla! permite la inyección SQL mediante PATH_INFO a un URI home/requested_user/Sent%20interest/. Joomla Ek Rishta component version 2.10 suffers from a remote SQL injection vulnerability. • https://www.exploit-db.com/exploits/44893 https://m4k4br0.github.io/sql-injection-joomla-component • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •