CVE-2019-9184

Vulnérabilités

CVE-2019-9184

SQL injection vulnerability in the J2Store plugin 3.x before 3.3.7 for Joomla!

CRITICAL j2store

SQL injection vulnerability in the J2Store plugin 3.x before 3.3.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the product_option[] parameter.

9.8 Critique · CVSS 3.0

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDCRITICAL 9.8 (v3.0)
Produit
j2store
Corrigée dans
3.3.7
Publiée
26/02/2019
Modifiée
17/06/2026
CWE
CWE-89
  • j2store — 3.3.0 – 3.3.7 (exclue)

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC