Description
In Joomla! before 3.8.4, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Hathor postinstall message.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2011-0880 Vulnerability (CVE-2011-0880)
WordPress Plugin Email newsletter 'option' Parameter Information Disclosure (8.0)
phpMyFAQ Business Logic Errors Vulnerability (CVE-2023-1887)
Java Unspesificed Vulnerability (CVE-2019-2766)
WordPress Plugin Gmedia Photo Gallery Arbitrary File Upload (1.2.1)