Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2019-19846 - Vulnerability Database
Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2019-19846
Critical
Reference:
CVE-2019-19846
Title:
Joomla Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:
In Joomla before 3.9.14 the lack of validation of configuration parameters used in SQL queries caused various SQL injection vectors.