Joomla 扩展 – joomshaper.com – SP Page Builder(免费版和专业版)5.2.1 至 6.9.0 中的内容插件存在已认证的权限提升 SQL 注入漏洞。 漏洞详情如下: 在 函数中,代码从请求中读取 参数,并将其直接拼接进针对 表的查询语句的 子句中,且未进行引号包裹或类型转换。 Joomla 的 ARRAY 输入过滤器不会对数组元素的具体值进行消毒处理,因为 方法直接将 强制转换为数组返回,数组元素保持原样不变,因此完整的攻击载荷可以通过单个 POST 字段完整传递。 此外,受影
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| joomshaper.com | SP Page Builder (Free and Pro) extension for Joomla | 5.2.1 - 6.9.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81564 | 7.0 HIGH | Joomla Extension - joomshaper.com - Missing Directory Confinement in Media Rename Allowing |
| CVE-2026-81565 | 6.9 MEDIUM | Joomla Extension - joomshaper.com - Missing Directory Confinement in Media Upload in SP Pa |
| CVE-2026-79700 | 6.9 MEDIUM | Joomla Extension - joomshaper.com - Unauthenticated CAPTCHA Bypass via Request-Controlled |
| CVE-2026-79701 | 6.9 MEDIUM | Joomla Extension - joomshaper.com - Unauthenticated CAPTCHA Bypass in Module Context in th |
| CVE-2026-81566 | 5.1 MEDIUM | Joomla Extension - joomshaper.com - Missing Access Control in Menu Item Creation in SP Pag |
No comments yet