7.5
CVSSv2

CVE-2010-0635

Published: 12/02/2010 Updated: 15/02/2010
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the plgSearchEventsearch::onSearch method in eventsearch.php in the JEvents Search plugin 1.5 up to and including 1.5.3 for Joomla! allows remote malicious users to execute arbitrary SQL commands via unspecified vectors. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

jevents jevents_search_plugin 1.5

jevents jevents_search_plugin 1.5.1

jevents jevents_search_plugin 1.5.2

jevents jevents_search_plugin 1.5.3