CVE-2017-15965 | NS Download Shop 2.2.6 on Joomla invoice.create ID sql injection (File 144435/Joo / EDB-43094)
A vulnerability, which was classified as critical, has been found in NS Download Shop 2.2.6 on Joomla. Affected by this issue is the function invoice.create. Such manipulation of the argument ID as part of Parameter leads to sql injection.
This vulnerability is listed as CVE-2017-15965. The attack may be performed from remote. In addition, an exploit is available.