CVE-2014-7981: SQL Injection
Published Oct 8, 2014
·Updated
SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x before 3.2.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
10 affected components
Joomla Joomla\!=3.1.0
Joomla Joomla\!=3.1.1
Joomla Joomla\!=3.1.2
Joomla Joomla\!=3.1.3
Joomla Joomla\!=3.1.4
Joomla Joomla\!=3.1.5
Joomla Joomla\!=3.1.6
Joomla Joomla\!=3.2.0
Joomla Joomla\!=3.2.1
Joomla Joomla\!=3.2.2
Event History
Oct 8, 2014
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-7981?
CVE-2014-7981 has a critical severity rating due to the potential for remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2014-7981?
To fix CVE-2014-7981, update your Joomla! CMS to version 3.2.3 or later.
3
Which versions of Joomla! are affected by CVE-2014-7981?
Joomla! CMS versions 3.1.x and 3.2.x before 3.2.3 are affected by CVE-2014-7981.
4
What is the impact of CVE-2014-7981 on Joomla! websites?
CVE-2014-7981 allows attackers to manipulate the database, potentially leading to data loss or unauthorized access.
5
Is there any workaround for CVE-2014-7981?
There are no known workarounds for CVE-2014-7981, so immediate updating is recommended.