Blog post

Joomla! 3.7.5 - Takeover in 20 Seconds with LDAP Injection

Robin Peraglie photo

Robin Peraglie

Vulnerability Researcher

Joomla! is one of the most popular content management systems. We detected a previously unknown LDAP injection vulnerability in the login controller that could allow remote attackers to l...