9.8
CVSSv3

CVE-2018-5971

Published: 17/02/2018 Updated: 02/03/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL Injection exists in the MediaLibrary Free 4.0.12 component for Joomla! via the id parameter or the mid array parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

ordasoft medialibrary 4.0.12

Exploits

# # # # # Exploit Title: Joomla! Component MediaLibrary Free 4012 - SQL Injection # Dork: N/A # Date: 16022018 # Vendor Homepage: ordasoftcom/ # Software Link: extensionsjoomlaorg/extensions/extension/living/education-a-culture/medialibrary-basic/ # Software Download: ordasoftcom/All-Download/Download-document/173-Med ...
Joomla! MediaLibrary Free component version 4012 suffers from a remote SQL injection vulnerability ...