7.5
CVSSv2

CVE-2010-5022

Published: 02/11/2011 Updated: 17/11/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote malicious users to execute arbitrary SQL commands via the view parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

harmistechnology com_jesubmit 1.4

Exploits

Exploit Title: Joomla JE Story submit SQL Injection Vendor url:joomlaextensionscoin Version:14 Greetz to:r0073r (inj3ct0rcom), Sid3^effects, MaYur, MA1201, Sonic Bluehat, Sai, KD, M4n0j Special Greetz: Topsecurenet, inj3ct0r Team ,Andhrahackerscom Shoutzz:- To all ICW members ~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~* ...