vendor:
Teams
by:
Salvatore Fresta aka Drosophila
7,5
CVSS
HIGH
Multiple Blind SQL Injection
89
CWE
Product Name: Teams
Affected Version From: 1_1028_100809_1711
Affected Version To: 1_1028_100809_1711
Patch Exists: NO
Related CWE: N/A
CPE: a:joomlamo:teams:1_1028_100809_1711
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2010
Teams 1_1028_100809_1711 Joomla Component Multiple Blind SQL Injection Vulnerabilities
Many parameters are not properly sanitised before being used in SQL queries. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.
Mitigation:
Input validation and sanitization should be used to prevent SQL injection attacks.