7.5
CVSSv2

CVE-2008-2568

Published: 06/06/2008 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and previous versions for Joomla! allows remote malicious users to execute arbitrary SQL commands via the catid parameter in a browse action to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla joomla

joomla com simpleshop

Exploits

/---------------------------------------------------------------\ \ / / Joomla Component simpleshop Remote SQL injection \ \ / \---------------------------------------------------------------/ [*] Author : His0k4 [ALGERIAN HaCkEr] [*] Dork : inurl:com_si ...
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ @ Joomla ~ option: com_simpleshop ~ SQL Injection ------------------------------------------------------ @ AUTHOR: eXeCuTeR <executerx[at]gmail[dot]com> ------------------------------------------------------ @ HOME: milw0rmcom ------------------------------------------ ...