7.5
CVSSv2

CVE-2010-4696

Published: 18/01/2011 Updated: 19/07/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Joomla! 1.5.x prior to 1.5.22 allow remote malicious users to execute arbitrary SQL commands via the (1) filter_order or (2) filter_order_Dir parameter in a com_contact action to index.php, a different vulnerability than CVE-2010-4166. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla joomla\\! 1.5.21

joomla joomla\\! 1.5.8

joomla joomla\\! 1.5.15

joomla joomla\\! 1.5.17

joomla joomla\\! 1.5.18

joomla joomla\\! 1.5.1

joomla joomla\\! 1.5.9

joomla joomla\\! 1.5.10

joomla joomla\\! 1.5.11

joomla joomla\\! 1.5.12

joomla joomla\\! 1.5.0

joomla joomla\\! 1.5.19

joomla joomla\\! 1.5.5

joomla joomla\\! 1.5.20

joomla joomla\\! 1.5.6

joomla joomla\\! 1.5.13

joomla joomla\\! 1.5.7

joomla joomla\\! 1.5.14

joomla joomla\\! 1.5.16

joomla joomla\\! 1.5.3

joomla joomla\\! 1.5.4

joomla joomla\\! 1.5.2