PT-2021-8331 · Unknown · Joomla! Core
Madis Abel
·
Published
2021-06-21
·
Updated
2021-09-20
·
CVE-2010-1435
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Joomla! Core versions 1.5.0 through 1.5.15
Description
The issue allows attackers to perform restricted actions and retrieve password reset tokens from the database through an existing SQL injection vector. This is a security bypass vulnerability that may be exploited to gain unauthorized access.
Recommendations
For Joomla! Core versions 1.5.0 through 1.5.15, update to a version outside of this range to resolve the issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Incorrect Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Joomla! Core