vendor:
Appointment
by:
Ihsan Sencan
5.5
CVSS
MEDIUM
SQL Injection
89
CWE
Product Name: Appointment
Affected Version From: 1.1
Affected Version To: 1.1
Patch Exists: NO
Related CWE:
CPE: a:joomlaextensions:appointment:1.1
Platforms Tested: Windows 7, Kali Linux
2017
Joomla! Component Appointment v1.1 – SQL Injection
The vulnerability allows the working user group to inject sql commands
Mitigation:
Apply proper input validation and sanitization techniques to prevent SQL Injection attacks.