7.5
CVSSv2

CVE-2010-4166

Published: 18/01/2011 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Joomla! 1.5.x prior to 1.5.22 allow remote malicious users to execute arbitrary SQL commands via (1) the filter_order parameter in a com_weblinks category action to index.php, (2) the filter_order_Dir parameter in a com_weblinks category action to index.php, or (3) the filter_order_Dir parameter in a com_messages action to administrator/index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla joomla\\! 1.5.11

joomla joomla\\! 1.5.13

joomla joomla\\! 1.5.3

joomla joomla\\! 1.5.2

joomla joomla\\! 1.5.9

joomla joomla\\! 1.5.18

joomla joomla\\! 1.5.16

joomla joomla\\! 1.5.4

joomla joomla\\! 1.5.10

joomla joomla\\! 1.5.7

joomla joomla\\! 1.5.0

joomla joomla\\! 1.5.15

joomla joomla\\! 1.5.6

joomla joomla\\! 1.5.1

joomla joomla\\! 1.5.17

joomla joomla\\! 1.5.8

joomla joomla\\! 1.5.19

joomla joomla\\! 1.5.21

joomla joomla\\! 1.5.12

joomla joomla\\! 1.5.5

joomla joomla\\! 1.5.20

joomla joomla\\! 1.5.14