CVE-2018-5974
SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla!
CRITICAL
simplecalendar
Description
SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array parameter.
Sévérité
9.8
Critique · CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | CRITICAL | 9.8 (v3.0) |
Produit et versions
- Produit
- simplecalendar
- Corrigée dans
- Non précisée
- Publiée
- 17/02/2018
- Modifiée
- 17/06/2026
- CWE
- CWE-89
Versions concernées
- simplecalendar — 3.1.9 – 3.1.9
Sources
- NVD CVE-2018-5974 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC