PT-2023-10808 · Unknown · Joomgallery

CVE-2018-25067

·

Publicado

2023-01-06

·

Atualizado

2024-05-17

CVSS v3.1

7.2

Alta

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JoomGallery versions up to 3.3.3
Description A critical issue was found in JoomGallery, affecting an unknown part of the file administrator/components/com joomgallery/views/config/tmpl/default.php of the component Image Sort Handler. The manipulation leads to sql injection.
Recommendations For JoomGallery versions up to 3.3.3, upgrade to version 3.3.4 to address this issue.

Correção

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-25067

Produtos afetados

Joomgallery