CVE-2010-2254

SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.php.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:shape5:bridge_of_hope_template:*:*:*:*:*:*:*:*
cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:16

Type Values Removed Values Added
References () http://packetstormsecurity.org/1001-exploits/joomlaboh-sql.txt - Exploit () http://packetstormsecurity.org/1001-exploits/joomlaboh-sql.txt - Exploit
References () http://www.exploit-db.com/exploits/10964 - Exploit () http://www.exploit-db.com/exploits/10964 - Exploit
References () http://www.securityfocus.com/bid/37602 - () http://www.securityfocus.com/bid/37602 -
References () http://www.vupen.com/english/advisories/2010/0019 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/0019 - Vendor Advisory

Information

Published : 2010-06-09 20:30

Updated : 2024-11-21 01:16


NVD link : CVE-2010-2254

Mitre link : CVE-2010-2254

CVE.ORG link : CVE-2010-2254


JSON object : View

Products Affected

shape5

  • bridge_of_hope_template

joomla

  • joomla\!
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')