EIP-2026-108427
PRE-CVEJoomla! Component com_kunena - 'search' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108427. PoCs published by D35m0nd142.
AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in the Joomla component com_kunena to extract user credentials, including hashed passwords, from the jos_users table. It uses a crafted URL with a malicious SQL query to bypass authentication and retrieve sensitive data.
Description
Joomla! Component com_kunena - 'search' SQL Injection
Exploits (1)
This Perl script exploits a SQL injection vulnerability in the Joomla component com_kunena to extract user credentials, including hashed passwords, from the jos_users table. It uses a crafted URL with a malicious SQL query to bypass authentication and retrieve sensitive data.