Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-343p-p7qv-45r9

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to execute arbitrary SQL commands via the id parameter in an editProfile action to administrator/index.php.

SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to execute arbitrary SQL commands via the id parameter in an editProfile action to administrator/index.php.

EPSS

Процентиль: 80%
0.01341
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
около 6 лет назад

SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to execute arbitrary SQL commands via the id parameter in an editProfile action to administrator/index.php.

EPSS

Процентиль: 80%
0.01341
Низкий