PoC Index

CVE-2015-7857

HIGH 7.5EPSS 94.5%

SQL injection vulnerability in the getListQuery function in administrator/components/com_contenthistory/models/history.php in Joomla! 3.2 before 3.4.5 allows remote attackers to execute arbitrary SQL commands via the list[select] parameter to index.php.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
94.47% chance of exploitation in the next 30 days, 100th percentile
Published
2015-10-29
Updated
2024-08-06

Proof-of-concept exploits (17)

Metasploit modules (1)

ExploitDB entries (1)

References

Related