SQL Injection Vulnerability in Harmis JE Messenger for Joomla!
CVE-2019-9918
8.5HIGH
What is CVE-2019-9918?
The Harmis JE Messenger component version 1.2.2 for Joomla! is susceptible to an SQL injection flaw due to inadequate input validation. Malicious actors can exploit this vulnerability by injecting arbitrary SQL statements into the application's database queries, potentially leading to unauthorized access and manipulation of sensitive data.
References
CVSS V3.1
Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
CVSS V3.0
Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
