Joomla : “Discussions” Component SQL Injection Vulnerability

source
Version/Dependency
Developer Link
Severity
Information At A Glance
 
exploit-db.com
  Ext works on 1.5, 1.6, 1.7 CodingFish.Com
High

 

 

 

Summary:

The 3rd party extension for the Joomla!® CMS – "Discussions" is vulnerable to a SQL Injection Vulnerability.

For full technical details please visit SOURCE. The version in question is v1.4 and possibly others.

V1.4 is currently listed as the most current listed at time of publication on the developers website.

What do I do to fix this?

Currently there is not a fix listed. The developer can provide more details and potential fixes. In lieu of a fix, its advised that you discontinue use of this extension or edit the code and correct the flaws.

Reported by : Red Security TEAM

 

 

SalvusAlerting.com is not affiliated with or endorsed by the Joomla! Project or Open Source Matters. Joomla! it trademark Open Source Matters,inc.