An issue was discovered in com_fields in Joomla! Core before 3.8.8. Inadequate filtering allows users authorised to create custom fields to manipulate the filtering options and inject an unvalidated option.
We have discovered 211,306 live websites that are affected by CVE-2018-11321.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 211,306 live websites (99% of Joomla install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 60 versions ( 58% of all versions) |
| 12,085 websites | |
| 52,572 websites | |
| 15,897 websites | |
| 13,770 websites | |
| 13,534 websites | |
| 13,357 websites | |
| 8,316 websites | |
| 7,877 websites | |
| 6,817 websites | |
| 6,703 websites |
| .com | 51,052 websites |
| .it | 34,239 websites |
| .ru | 13,329 websites |
| .pl | 9,725 websites |
| .co.uk | 6,502 websites |
| .org | 5,827 websites |
| .de | 5,324 websites |
| .net | 4,445 websites |
| .nl | 4,114 websites |
| .se | 3,379 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****************.de | *,*** | ||
| *******.**.ca | *,*** | ||
| *****.com | **,*** | ||
| ***********.**.za | **,*** | ||
| **************.se | **,*** | ||
| ***************.com | **,*** | ||
| *********.com | **,*** | ||
| ************.com | **,*** | ||
| ************.com | **,*** | ||
| *********************.com | **,*** |