vendor:
jp_jobs
by:
Valentin Hoebel
8,8
CVSS
HIGH
SQL Injection
89
CWE
Product Name: jp_jobs
Affected Version From: All
Affected Version To: 1.4.1
Patch Exists: YES
Related CWE: N/A
CPE: a:joomla_projects:jp_jobs
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2011
Joomla component jp_jobs SQL Injection vulnerability
The component is extremly useful when it comes down to implementing some sort of job portal into your Joomla website. Injecting SQL commands while viewing details about a job is possible.
Mitigation:
Upgrade to the latest version of jp_jobs