First published: Tue Jun 12 2018(Updated: )
router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_user/Sent%20interest/ URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Harmistechnology Ek Rishta | =2.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12254 is classified as a high severity vulnerability due to its potential to allow SQL Injection attacks.
To fix CVE-2018-12254, it is recommended to upgrade the Harmis Ek Rishta component to a version that patch this vulnerability.
CVE-2018-12254 enables SQL Injection attacks, allowing attackers to manipulate database queries.
CVE-2018-12254 affects the Harmis Ek Rishta component specifically in Joomla! version 2.10.
CVE-2018-12254 is associated with the Harmis Ek Rishta component for Joomla!