LiveActive security incident?Get immediate response
CVE Record

CVE-2022-23797: [20220305] - Core - Inadequate filtering on the selected Ids

An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate filtering on the selected Ids on an request could resulted into an possible SQL injection.

UnknownCVSS not scoredNot KEV-listedUpdated
Glexia's TakeAutomated analysishigh

Security readout for executives and security teams

Plain-English summary

CVE-2022-23797 affects Joomla! CMS versions 3.0.0 through 3.10.6 and 4.0.0 through 4.1.0. The issue is inadequate filtering of selected IDs in a request, creating possible SQL injection risk. The source bundle does not provide CVSS, impact depth, or confirmed exploitation.

Executive priority

Treat this as a high-priority CMS maintenance issue for exposed Joomla! sites because SQL injection can affect sensitive data. Urgency is lower than a confirmed exploited KEV item, but affected public sites should be upgraded promptly.

Technical view

The CVE describes insufficient filtering of selected ID values in Joomla! Core request handling, potentially allowing SQL injection. Affected ranges are Joomla! CMS 3.0.0-3.10.6 and 4.0.0-4.1.0. No CWE, CVSS vector, exploit detail, or fixed version is provided in the supplied bundle.

Likely exposure

Exposure is most likely for internet-facing Joomla! sites running the affected 3.x or 4.x ranges. Sites no longer on those versions may still need verification because the bundle does not name fixed releases.

Exploitation context

The supplied sources do not show active exploitation, and CISA KEV is false. Public vulnerability records identify possible SQL injection, but provide no exploit status, required privileges, or affected endpoint details in the bundle.

Researcher notes

Evidence is limited to the CVE description and Joomla! advisory reference. Do not assume exploitability conditions, authentication requirements, or fixed versions without reading the vendor advisory. Validation should focus on version exposure and vendor-confirmed remediation status.

Mitigation direction

  • Inventory Joomla! CMS versions across all public and internal sites.
  • Check Joomla! vendor advisory for the fixed release path before upgrading.
  • Prioritize upgrades for internet-facing affected Joomla! instances.
  • Review web application firewall and database monitoring alerts for suspicious request patterns.

Validation and detection

  • Confirm each Joomla! site version against the affected ranges.
  • Verify remediation against Joomla! Project guidance, not assumptions.
  • Review logs for unusual requests involving selected ID parameters.
  • Confirm no unsupported Joomla! installations remain exposed.
Prepared
Confidence
medium
Sources
3

Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.

Potential ATT&CK relevance

Conservative CVE-to-ATT&CK context

These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.

ATT&CK lookup starting points

Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.

description · low confidence lookup

Database behavior lookup

The CVE wording references database injection or access, so collection and exfiltration review may help. This is a Glexia inferred lookup path, not an official MITRE, ATT&CK, or CVE Program mapping.

Open ATT&CK lookup
cve · low confidence lookup

CVE-2022-23797 mapping review

Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.

Open ATT&CK lookup
Vulnerability profileCVE Program record
Severity
Unknown
CVSS
Not scored
Known Exploited
No
Published
Official CVE source material

CNA and ADP enrichment extracted from CVE v5

These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.

0CVSS vectors
0Timeline events
0ADP providers
2Source links

CVSS and timeline data

No CVSS vectors or timeline events were available in the normalized CVE source material.

Affected products

Products and packages named in the record

VendorProductVersion / packageStatus
Joomla! ProjectJoomla! CMS3.0.0-3.10.6 & 4.0.0-4.1.0Listed
Weakness

CWE details

No CWE listed

CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.