Vulnerability Description
SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift action, the category parameter in a view=home action, the uid parameter in a view=pindisplay action, the searchVal parameter in a view=search action, or the uid parameter in a view=likes action.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Social Pinboard Project | Social Pinboard | 2.0 |
Related Weaknesses (CWE)
References
- https://exploit-db.com/exploits/44131ExploitThird Party AdvisoryVDB Entry
- https://exploit-db.com/exploits/44131ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2018-5987?
CVE-2018-5987 is a vulnerability with a CVSS score of 9.8 (CRITICAL). SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift action, the ca...
How severe is CVE-2018-5987?
CVE-2018-5987 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-5987?
Check the references section above for vendor advisories and patch information. Affected products include: Social Pinboard Project Social Pinboard.