Multiple SQL injection vulnerabilities in Joomla! 1.5.x before 1.5.22 allow remote attackers to execute arbitrary SQL commands via (1) the filter_order parameter in a com_weblinks category action to index.php, (2) the filter_order_Dir parameter in a com_weblinks category action to index.php, or (3) the filter_order_Dir parameter in a com_messages action to administrator/index.php.
We have discovered 123,696 live websites that are affected by CVE-2010-4166.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 123,696 live websites (93% of Joomla install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 1 versions ( 0.77% of all versions) |
| 6,482 websites | |
| 36,211 websites | |
| 10,328 websites | |
| 6,998 websites | |
| 6,431 websites | |
| 5,121 websites | |
| 4,966 websites | |
| 4,604 websites | |
| 4,265 websites | |
| 3,713 websites |
| .com | 26,729 websites |
| .it | 24,075 websites |
| .ru | 8,600 websites |
| .nl | 3,865 websites |
| .de | 3,292 websites |
| .se | 3,126 websites |
| .org | 2,922 websites |
| .cz | 2,860 websites |
| .co.uk | 2,717 websites |
| .net | 2,437 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.com | **,*** | ||
| ************.com | **,*** | ||
| *********************.com | **,*** | ||
| *****.org | **,*** | ||
| ********.com | **,*** | ||
| *****.it | **,*** | ||
| *********.com | **,*** | ||
| ******.cz | **,*** | ||
| *******.ru | **,*** | ||
| *******.com | **,*** |
FAQ