CVE-2021-47930: Balbooa Joomla Forms Builder 2.0.6 SQL Injection Unauthenticated
Balbooa Joomla Forms Builder 2.0.6 contains an unauthenticated SQL injection vulnerability in the form submission handler that allows remote attackers to execute arbitrary SQL queries. Attackers can send POST requests to the combaforms component with malicious JSON payloads in the 'id' field parameter to extract sensitive database information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-47930?
CVE-2021-47930 is classified as a high-severity vulnerability due to its potential to allow unauthenticated SQL injection with significant impacts.
How do I fix CVE-2021-47930?
To fix CVE-2021-47930, upgrade Balbooa Joomla Forms Builder to the latest version that addresses this vulnerability.
What does CVE-2021-47930 affect?
CVE-2021-47930 affects Balbooa Joomla Forms Builder version 2.0.6.
What type of vulnerability is CVE-2021-47930?
CVE-2021-47930 is an unauthenticated SQL injection vulnerability found in the form submission handler.
Can CVE-2021-47930 be exploited remotely?
Yes, CVE-2021-47930 can be exploited remotely by sending specially crafted POST requests to the affected application.