vendor:
com_phocadocumentation
by:
EcHoLL
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: com_phocadocumentation
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Joomla com_phocadocumentation Sql injection
A vulnerability exists in Joomla's com_phocadocumentation module which allows an attacker to inject arbitrary SQL commands. An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable application. This can result in the compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.
Mitigation:
Upgrade to the latest version of Joomla and com_phocadocumentation module.