vendor:
TPDugg
by:
NoGe
7.5
CVSS
HIGH
Blind SQL Injection
89
CWE
Product Name: TPDugg
Affected Version From: 1.1
Affected Version To: 1.1
Patch Exists: YES
Related CWE: N/A
CPE: a:templateplazza:tpdugg:1.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Joomla
2009
TPDugg Joomla Component 1.1 Blind SQL Injection Exploit
This exploit allows an attacker to inject malicious SQL queries into the vulnerable TPDugg Joomla Component 1.1. The attacker can use this vulnerability to gain access to the database and extract sensitive information such as usernames and passwords.
Mitigation:
The vendor has released a patch to address this vulnerability. It is recommended to update the TPDugg Joomla Component to the latest version.