Vulnerabilities
Vulnerable Software
Weborange:  Security Vulnerabilities
Joomla! Component Price Alert 3.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the product_id parameter. Attackers can send requests to the subscribeajax view with crafted SQL payloads in the product_id parameter to extract sensitive database information including credentials and configuration data.
CVSS Score
8.8
EPSS Score
0.004
Published
2026-06-19
Joomla! Component Bargain Product VM3 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the product_id parameter. Attackers can supply crafted SQL statements in GET requests to the brainy and alice views to extract sensitive database information.
CVSS Score
8.8
EPSS Score
0.004
Published
2026-06-19


Contact Us

Shodan ® - All rights reserved