Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multiple filter parameters. Attackers can inject malicious SQL code via the filter_type_id, filter_pid_id, and filter_search parameters in POST requests to extract sensitive database information including credentials and server details.
Metrics
Affected Vendors & Products
References
History
Mon, 25 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multiple filter parameters. Attackers can inject malicious SQL code via the filter_type_id, filter_pid_id, and filter_search parameters in POST requests to extract sensitive database information including credentials and server details. | |
| Title | Joomla Responsive Portfolio 1.6.1 SQL Injection via filter parameters | |
| First Time appeared |
Almera Responsive Portfolio Project
Almera Responsive Portfolio Project almera Responsive Portfolio |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:almera_responsive_portfolio_project:almera_responsive_portfolio:1.6.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Almera Responsive Portfolio Project
Almera Responsive Portfolio Project almera Responsive Portfolio |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-25T14:15:23.614Z
Reserved: 2026-05-25T14:07:48.214Z
Link: CVE-2018-25381
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-05-25T15:30:06Z