7.5
CVSSv2

CVE-2018-5990

Published: 17/02/2018 Updated: 02/03/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL Injection exists in the AllVideos Reloaded 1.2.x component for Joomla! via the divid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

allvideos reloaded project allvideos reloaded

Exploits

# # # # # Exploit Title: Joomla! Component AllVideos Reloaded 12x - SQL Injection # Dork: N/A # Date: 16022018 # Vendor Homepage: allvideosfritz-elfertde # Software Link: joomlacodeorg/gf/project/allvideos15/frs/?action=FrsReleaseBrowse&frs_package_id=3564 # Version: 12x # Category: Webapps # Tested on: WiN7_x64/KaLiLinuX ...
Joomla! AllVideos Reloaded component version 12x suffers from a remote SQL injection vulnerability ...