Vulnerabilities > Thephpfactory

DATE CVE VULNERABILITY TITLE RISK
2018-09-28 CVE-2018-17376 SQL Injection vulnerability in Thephpfactory Reverse Auction Factory 4.3.8
SQL Injection exists in the Reverse Auction Factory 4.3.8 component for Joomla! via the filter_order_Dir, cat, or filter_letter parameter.
network
low complexity
thephpfactory CWE-89
critical
9.8