Vulnerability Details CVE-2017-20277
Joomla JoomRecipe 1.0.4 component contains a blind SQL injection vulnerability in the search_author parameter on the search results page. Attackers can inject SQL code through POST requests to the search endpoint to extract database information using boolean-based blind SQL injection techniques.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 34.5%
CVSS Severity
CVSS v3 Score 8.2
Products affected by CVE-2017-20277
-
cpe:2.3:a:joomboost:joomla_joomrecipe:1.0.4