National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

Search Results (Refine Search)

Search Parameters:
  • Contains Software Flaws (CVE)
  • CPE Product Version: cpe:/a:joomlaboat:com_youtubegallery:4.1.1::~~~joomla%21~~
There are 1 matching records.
Vuln ID Summary CVSS Severity
CVE-2014-4960

Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) listid or (2) themeid parameter to index.php.

Published: July 21, 2014; 10:55:06 AM -04:00
    V2: 7.5 HIGH