Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The product has reached the end of its useful life (EoL), so there is no solution.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-32243 | SQL injection vulnerability in Joomla module mod_vvisit_counter v2.0.4j3. This vulnerability allows an attacker to retrieve database content via the ‘cip_vvisitcounter’ cookie at all endpoints where the plugin counts visits. |
Mon, 06 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomla
Joomla joomla Joomla joomla! Joomla mod Vvisit Counter |
|
| Vendors & Products |
Joomla
Joomla joomla Joomla joomla! Joomla mod Vvisit Counter |
Fri, 03 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 03 Oct 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL injection vulnerability in Joomla module mod_vvisit_counter v2.0.4j3. This vulnerability allows an attacker to retrieve database content via the ‘cip_vvisitcounter’ cookie at all endpoints where the plugin counts visits. | |
| Title | SQL injection in the mod_vvisit_counter module | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-10-03T13:56:34.609Z
Reserved: 2025-04-16T08:38:10.819Z
Link: CVE-2025-40636
Updated: 2025-10-03T13:56:30.541Z
Status : Deferred
Published: 2025-10-03T12:15:44.200
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-40636
No data.
OpenCVE Enrichment
Updated: 2025-10-06T14:43:09Z
EUVD