PT-2023-9887 · Unknown · Gesellix Titlelink

Published

2023-01-04

·

Updated

2024-05-17

·

CVE-2010-10003

CVSS v2.0

5.2

Medium

VectorAV:A/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions gesellix titlelink (affected versions not specified)
Description A critical issue was found in gesellix titlelink on Joomla, affecting an unknown functionality of the file plugin content title.php. The manipulation of the phrase argument leads to SQL injection.
Recommendations Apply a patch to fix this issue. The patch is named b4604e523853965fa981a4e79aef4b554a535db0. As a temporary workaround, consider restricting access to the plugin content title.php file until the patch is applied.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2010-10003

Affected Products

Gesellix Titlelink