Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-9918

Опубликовано: 29 мар. 2019
Источник: nvd
CVSS3: 8.5
CVSS3: 9.1
CVSS2: 6.4
EPSS Низкий

Описание

An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Input does not get validated and queries are not written in a way to prevent SQL injection. Therefore arbitrary SQL-Statements can be executed in the database.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:harmistechnology:je_messenger:1.2.2:*:*:*:*:joomla\!:*:*

EPSS

Процентиль: 46%
0.00233
Низкий

8.5 High

CVSS3

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.1
github
больше 3 лет назад

An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Input does not get validated and queries are not written in a way to prevent SQL injection. Therefore arbitrary SQL-Statements can be executed in the database.

EPSS

Процентиль: 46%
0.00233
Низкий

8.5 High

CVSS3

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-89