An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype.
References
Link | Resource |
---|---|
https://developer.joomla.org/security-centre/807-20200306-core-sql-injection-in-featured-articles-menu-parameters | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-16T15:50:50
Updated: 2020-03-16T15:50:50
Reserved: 2020-03-09T00:00:00
Link: CVE-2020-10243
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-03-16T16:15:13.517
Modified: 2020-03-18T19:04:41.283
Link: CVE-2020-10243
JSON object: View
Redhat Information
No data.
CWE