Joomla! before 3.7.1 contains a SQL injection vulnerability. An attacker can possibly obtain sensitive information from a database, modify data, and execute unauthorized administrative operations in the context of the affected site.
id: CVE-2017-8917
info:
name: Joomla! <3.7.1 - SQL Injection
author: princechaddha
severity:
...