vendor:
My Car
by:
Valentin
N/A
CVSS
N/A
Multiple Vulnerabilities
CWE
Product Name: My Car
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Not mentioned
2010
Joomla Component My Car Multiple Vulnerabilities
The Joomla Component My Car has multiple vulnerabilities including XSS, Information Disclosure, and Possible SQL Injection. The XSS vulnerability can be exploited by manipulating the 'modveh' parameter in the 'index.php?option=com_mycar&task=1&pagina=0&ordine=preveh&modveh=[XSS]' URI. The Information Disclosure vulnerability can be exploited by manipulating the parameters and URLs, which reveal SQL errors and website path information. The Possible SQL Injection vulnerability can be triggered by using the 'index.php?option=com_mycar&task=1&pagina=-1' URI.
Mitigation:
No mitigation provided.