Description
The 'Visforms Base Package for Joomla 3' extension is vulnerable to SQL Injection as concatenation is used to construct an SQL Query. An attacker can interact with the database and could be able to read, modify and delete data on it.
Published: 2023-04-23
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-27839 The 'Visforms Base Package for Joomla 3' extension is vulnerable to SQL Injection as concatenation is used to construct an SQL Query. An attacker can interact with the database and could be able to read, modify and delete data on it.
History

Wed, 05 Feb 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Vi-solutions Visforms
cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2025-02-06T10:48:25.140Z

Reserved: 2023-01-17T19:02:50.302Z

Link: CVE-2023-23753

cve-icon Vulnrichment

Updated: 2024-08-02T10:42:25.788Z

cve-icon NVD

Status : Modified

Published: 2023-04-23T21:15:06.910

Modified: 2025-02-05T16:15:35.237

Link: CVE-2023-23753

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses