Release date:
Updated on: 2012-10-02
Affected Systems:
Joomla! JE Poll 1.0
Unaffected system:
Joomla! JE Poll 1.1
Description:
--------------------------------------------------------------------------------
Bugtraq id: 51229
CVE (CAN) ID: CVE-2012-5101
Joomla! Is an Open Source Content Management System (CMS ). Joomla! JE Poll is a component, module, and plug-in of Jommla 1.5 and Joomla 1.6. It displays the voting result as an animation.
Joomla JE Poll 1.1 and earlier versions have the SQL injection vulnerability, which allows attackers to control applications, access or modify data.
<* Source: vendor
Link: http://secunia.com/advisories/47436
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Joomla!
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.joomla.org/