Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2018-8045 - Vulnerability Database

Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2018-8045

High
Reference: CVE-2018-8045
Title: Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

In Joomla 3.5.0 through 3.8.5 the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the User Notes list view.