CVE-2018-5970
CRITICALJGive 2.0.9 - SQL Injection via filter_org_ind_type or campaign_countries Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-5970. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Joomla! Component JGive 2.0.9 via two distinct endpoints. The PoC provides encoded payloads that can be injected into the 'filter_org_ind_type' and 'campaign_countries' parameters to exploit the vulnerability.
Description
SQL Injection exists in the JGive 2.0.9 component for Joomla! via the filter_org_ind_type or campaign_countries parameter.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Joomla! Component JGive 2.0.9 via two distinct endpoints. The PoC provides encoded payloads that can be injected into the 'filter_org_ind_type' and 'campaign_countries' parameters to exploit the vulnerability.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H