CVE-2015-7858: SQL Injection
Published Oct 29, 2015
·Updated
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7297.
Affected Software
14 affected components
Joomla Joomla\!=3.2.0
Joomla Joomla\!=3.2.1
Joomla Joomla\!=3.2.2
Joomla Joomla\!=3.2.3
Joomla Joomla\!=3.2.4
Joomla Joomla\!=3.3.0
Joomla Joomla\!=3.3.1
Joomla Joomla\!=3.3.2
Joomla Joomla\!=3.3.3
Joomla Joomla\!=3.3.4
Joomla Joomla\!=3.4.0
Joomla Joomla\!=3.4.1
Joomla Joomla\!=3.4.2
Joomla Joomla\!=3.4.3
Event History
Oct 29, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7858?
CVE-2015-7858 is classified as a high severity SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2015-7858?
To fix CVE-2015-7858, update Joomla! to version 3.4.4 or later, where the vulnerability is addressed.
3
What versions of Joomla! are affected by CVE-2015-7858?
CVE-2015-7858 affects Joomla! versions 3.2.0 to 3.4.3.
4
How can attackers exploit CVE-2015-7858?
Attackers can exploit CVE-2015-7858 through unspecified vectors to perform SQL injection attacks.
5
Where can I find more information about CVE-2015-7858?
Additional information regarding CVE-2015-7858 can be found in Joomla's official security advisories.