CVE-2018-12254: Harmistechnology Ek Rishta
High severity, CVSS 8.8. EPSS: 2.6% chance of exploitation in the next 30 days.
router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_user/Sent%20interest/ URI.
Affected products
- Harmistechnology Ek Rishta: version 2.10 only
Published 2018-06-12. Last modified 2026-06-17.