1 results (0.002 seconds)
CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1
CVE-2008-2676 – Joomla! Component iJoomla! News Portal 1.0 - 'itemID' SQL Injection
https://notcve.org/view.php?id=CVE-2008-2676
SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php. Vulnerabilidad de inyección SQL en el componente iJoomla News Portal (com_news_portal) 1.0 y anteriores para Joomla! permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro Itemid para index.php. • https://www.exploit-db.com/exploits/5761 https://exchange.xforce.ibmcloud.com/vulnerabilities/42936 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •