First published: Fri Oct 21 2016(Updated: )
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huge-it Catalog | =1.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-1000119 is classified as high due to the presence of SQL injection and Cross-Site Scripting vulnerabilities.
To fix CVE-2016-1000119, update the Huge IT Catalog extension to the latest version or apply patches provided by the vendor.
CVE-2016-1000119 contains both SQL injection and Cross-Site Scripting (XSS) vulnerabilities.
Yes, CVE-2016-1000119 can lead to unauthorized access to the database and potential data compromise.
CVE-2016-1000119 specifically affects the Huge IT Catalog extension version 1.0.4 for Joomla.