First published: Mon Mar 09 2020(Updated: )
SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phlymail | <4.9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7338 has not been assigned a specific CVSS score, but it is categorized as a critical vulnerability due to its potential for SQL injection attacks.
The fix for CVE-2015-7338 is to upgrade the AcyMailing Joomla Component to version 4.9.5 or later.
CVE-2015-7338 affects versions of the AcyMailing Joomla Component prior to 4.9.5.
CVE-2015-7338 is an SQL injection vulnerability that can allow attackers to manipulate database queries.
Exploiting CVE-2015-7338 could allow an attacker to execute arbitrary SQL queries, potentially leading to unauthorized data access.