CPE, which stands for Common Platform Enumeration, is a standardized scheme for naming hardware, software, and operating systems. CPE provides a structured naming scheme to uniquely identify and classify information technology systems, platforms, and packages based on certain attributes such as vendor, product name, version, update, edition, and language.
CWE, or Common Weakness Enumeration, is a comprehensive list and categorization of software weaknesses and vulnerabilities. It serves as a common language for describing software security weaknesses in architecture, design, code, or implementation that can lead to vulnerabilities.
CAPEC, which stands for Common Attack Pattern Enumeration and Classification, is a comprehensive, publicly available resource that documents common patterns of attack employed by adversaries in cyber attacks. This knowledge base aims to understand and articulate common vulnerabilities and the methods attackers use to exploit them.
Services & Price
Help & Info
Search : CVE id, CWE id, CAPEC id, vendor or keywords in CVE
Multiple SQL injection vulnerabilities in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allow remote attackers to execute arbitrary SQL commands via the viewform parameter in a (1) ferforms or (2) tferforms action to index.php, and the (3) id parameter in a vferforms action to index.php.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
Metrics
Metrics
Score
Severity
CVSS Vector
Source
V2
7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
nvd@nist.gov
EPSS
EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.
EPSS Score
The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.
Date
EPSS V0
EPSS V1
EPSS V2 (> 2022-02-04)
EPSS V3 (> 2025-03-07)
EPSS V4 (> 2025-03-17)
2022-02-06
–
–
1.21%
–
–
2022-03-27
–
–
1.21%
–
–
2022-04-03
–
–
1.21%
–
–
2022-05-08
–
–
1.21%
–
–
2022-08-28
–
–
1.21%
–
–
2023-02-26
–
–
1.21%
–
–
2023-03-12
–
–
–
0.25%
–
2023-07-16
–
–
–
0.25%
–
2023-12-24
–
–
–
0.25%
–
2024-02-11
–
–
–
0.25%
–
2024-06-02
–
–
–
0.25%
–
2024-12-22
–
–
–
0.26%
–
2025-01-19
–
–
–
0.26%
–
2025-03-09
–
–
–
0.26%
–
2025-01-19
–
–
–
0.26%
–
2025-03-09
–
–
–
0.26%
–
2025-03-18
–
–
–
–
0.4%
2025-03-30
–
–
–
–
0.4%
2025-04-06
–
–
–
–
0.37%
2025-04-06
–
–
–
–
0.37,%
EPSS Percentile
The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.
ArtForms 2.1b7.2 RC2 Joomla Component Multiple Remote Vulnerabilities
Name ArtForms
Vendor http://joomlacode.org/gf/project/jartforms/
Versions Affected 2.1b7.2 RC2
Author Salvatore Fresta aka Drosophila
Website http://www.salvatorefresta.net
Contact salvatorefresta [at] gmail [dot] com
Date 2010-07-07
X. INDEX
I. ABOUT THE APPLICATION
II. DESCRIPTION
III. ANALYSIS
IV. SAMPLE CODE
V. FIX
I. ABOUT THE APPLICATION
________________________
ArtForms is a popular Joomla component.
The ArtForms component is a package for an easy From
Generator for Joomla 1.0.xx. It allows you to generate
as much Forms as you like, you can define all fields
that you need and also make file upload and attachment
possible.
II. DESCRIPTION
_______________
Some parameters are not sanitised before being used in
SQL queries and in danger PHP's functions.
The vulnerabilities are reported in version 2.1b7.2 RC2.
Other versions may also be affected.
III. ANALYSIS
_____________
Summary:
A) Multiple SQL Injection
B) Directory Traversal
C) Reflected XSS
A) Multiple SQL Injection
_________________________
The parameters viewform and id are not properly sanitised
before being used in a SQL query.This can be exploited to
manipulate SQL queries by injecting arbitrary SQL code.
B) Directory Traversal
______________________
The l parameter in alikon/captcha.php is not properly
sanitised before being used to create a path for a file
that will be downloaded.This can be exploited to download
arbitrary files from local resources via directory
traversal attacks.
C) Reflected XSS
________________
The afmsg parameter is not properly sanitised before
being printed.This allows the execution of arbitrary HTML
code.
IV. SAMPLE CODE
_______________
A) Multiple SQL Injection
index.php?option=com_artforms&task=ferforms&viewform=1 UNION SELECT 1,2,3,4,5,6%23
index.php?option=com_artforms&task=vferforms&id=1 UNION SELECT 1,2,3,4,5,6%23
index.php?option=com_artforms&task=tferforms&viewform=1 UNION SELECT 1,2,3,4,5,6%23
B) Directory Traversal
http://site/path/components/com_artforms/assets/captcha/includes/alikon/playcode.php?l=../../../../../../../../../../../../etc/passwd%00
C) Reflected XSS
index.php?option=com_artforms&formid=1&afmsg=<script>alert('xss');</script>
V. FIX
______
No fix.