7.5
CVSSv2

CVE-2006-7010

Published: 12/02/2007 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The mosgetparam implementation in Joomla! prior to 1.0.10, does not set a variable's data type to integer when the variable's default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla joomla 1.0.2

joomla joomla 1.0.3

joomla joomla 1.0.4

joomla joomla 1.0.5

joomla joomla 1.0.0

joomla joomla 1.0.7

joomla joomla 1.0.9

joomla joomla 1.0.1

joomla joomla 1.0.6

joomla joomla 1.0.8