CVE-2018-14592 | CWJoomla CW Article Attachments PRO Extension up to 2.0.6 on Joomla download.php sql injection (EDB-45447)
A vulnerability, which was classified as critical, was found in CWJoomla CW Article Attachments PRO Extension and CW Article Attachments FREE Extension up to 2.0.6 on Joomla. Affected is an unknown function of the file download.php. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2018-14592. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.