Vulnerability Details CVE-2019-9918
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Input does not get validated and queries are not written in a way to prevent SQL injection. Therefore arbitrary SQL-Statements can be executed in the database.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.2%
CVSS Severity
CVSS v3 Score 8.5
CVSS v2 Score 6.4
Products affected by CVE-2019-9918
-
cpe:2.3:a:harmistechnology:je_messenger:1.2.2