CVE-2012-1116

Joomla! <2.5.2 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in Joomla! 1.7.x and 2.5.x before 2.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Colin Wong · perlwebappsphp
https://www.exploit-db.com/exploits/36913

Scores

EPSS 0.0014
EPSS Percentile 33.7%

Details

CWE
CWE-89
Status published
Products (8)
joomla/joomla\! 1.7.0
joomla/joomla\! 1.7.1
joomla/joomla\! 1.7.2
joomla/joomla\! 1.7.3
joomla/joomla\! 1.7.4
joomla/joomla\! 1.7.5
joomla/joomla\! 2.5.0
joomla/joomla\! 2.5.1
Published Sep 26, 2012
Tracked Since Feb 18, 2026