RULE(RULE ID:317546)

Rule General Information
Release Date: 2020-10-26
Rule Name: Joomla com_fields SQL Injection Vulnerability (CVE-2017-8917)
Severity:
CVE ID:
Rule Protection Details
Description: SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Others
Reference: SecurityFocusBID:98515
ExploitDB:42033
SecurityTrackerID:1038522
https://developer.joomla.org/security-centre/692-20170501-core-sql-injection.html
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://developer.joomla.org/security-centre/692-20170501-core-sql-injection.html