PT-2021-8331 · Unknown · Joomla! Core

Madis Abel

·

Published

2021-06-21

·

Updated

2021-09-20

·

CVE-2010-1435

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Joomla! Core versions 1.5.0 through 1.5.15
Description The issue allows attackers to perform restricted actions and retrieve password reset tokens from the database through an existing SQL injection vector. This is a security bypass vulnerability that may be exploited to gain unauthorized access.
Recommendations For Joomla! Core versions 1.5.0 through 1.5.15, update to a version outside of this range to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1435

Affected Products

Joomla! Core