Security Advisory

CVE-2013-3081

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-06-09 19:00:00
Last updated 2024-08-06 16:00:09
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in the checkEmailFormat function in plugins/jojo_core/classes/Jojo.php in Jojo before 1.2.2 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header to /articles/test/.