7.5
CVSSv2

CVE-2018-6005

Published: 17/02/2018 Updated: 02/03/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL Injection exists in the Realpin up to and including 1.5.04 component for Joomla! via the pinboard parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

realpin project realpin

Exploits

# # # # # Exploit Title: Joomla! Component Realpin <= 1504 - SQL Injection # Dork: N/A # Date: 16022018 # Vendor Homepage: realpinfrumaniacom/ # Software Link: extensionsjoomlaorg/extensions/extension/multimedia/multimedia-display/realpin/ # Software Download: realpinfrumaniacom/downloads/com_realpin_j31_1504z ...
Joomla! Realpin component versions 1504 and below suffer from a remote SQL injection vulnerability ...