Vulnerabilities > Thephpfactory > Collection Factory > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-09-28 CVE-2018-17383 SQL Injection vulnerability in Thephpfactory Collection Factory 4.1.9
SQL Injection exists in the Collection Factory 4.1.9 component for Joomla! via the filter_order or filter_order_Dir parameter.
network
low complexity
thephpfactory CWE-89
critical
9.8