Beveiligingsadvies

CVE-2018-25380

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-25 14:15:22
Laatst bijgewerkt 2026-05-26 13:07:26
Toegewezen door VulnCheck
CVSS-score 7.1
Status PUBLISHED

Beschrijving

Joomla Component eXtroForms 2.1.5 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through the filter_type_id, filter_pid_id, and filter_search parameters. Attackers can submit POST requests to the extroformfield view with malicious SQL payloads to extract sensitive database information and server data.