Security Advisory

CVE-2025-49485

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-18 09:51:01
Last updated 2025-07-20 08:52:54
Assigner Joomla
CVSS score not scored
State PUBLISHED

Description

A SQL injection vulnerability in the Balbooa Forms plugin 1.0.0-2.3.1.1 for Joomla allows privileged users to execute arbitrary SQL commands via the 'id' parameter.