vendor:
com_agenda
by:
v3n0m
7,5
CVSS
HIGH
Remote SQL Injection
89
CWE
Product Name: com_agenda
Affected Version From: 1.0.1
Affected Version To: 1.0.1
Patch Exists: NO
Related CWE: N/A
CPE: a:joomlanetprojects:com_agenda
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2010
Joomla Component com_agenda 1.0.1 (id) Remote SQL Injection Vulnerability
A vulnerability in the Joomla Component com_agenda 1.0.1 (id) allows an attacker to inject malicious SQL commands into the application. This can be exploited to gain access to the database and potentially gain access to sensitive information.
Mitigation:
Ensure that user input is properly sanitized and validated before being used in SQL queries.