Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multiple filter parameters. Attackers can inject malicious SQL code via the filter_type_id, filter_pid_id, and filter_search parameters in POST requests to extract sensitive database information including credentials and server details.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 25 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multiple filter parameters. Attackers can inject malicious SQL code via the filter_type_id, filter_pid_id, and filter_search parameters in POST requests to extract sensitive database information including credentials and server details. | |
| Title | Joomla Responsive Portfolio 1.6.1 SQL Injection via filter parameters | |
| First Time appeared |
Almera Responsive Portfolio Project
Almera Responsive Portfolio Project almera Responsive Portfolio |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:almera_responsive_portfolio_project:almera_responsive_portfolio:1.6.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Almera Responsive Portfolio Project
Almera Responsive Portfolio Project almera Responsive Portfolio |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-25T14:15:23.614Z
Reserved: 2026-05-25T14:07:48.214Z
Link: CVE-2018-25381
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-05-25T15:30:06Z
Weaknesses