Description
A critical vulnerability was reported to the VirtueMart team. This vulnerability could be used by a malicious user to easily gain Super-Admin privileges on your website. The bug was patched and the version 2.6.10 (stable version) and 2.9.9b (in RC state) fixes this issue.
Remediation
Upgrade to the latest version of VirtueMart for Joomla! (this issue was fixed in v2.6.10).
References
Related Vulnerabilities
WordPress Plugin S3 Video Cross-Site Scripting (0.97)
Oracle Application Server CVE-2008-0346 Vulnerability (CVE-2008-0346)
WordPress Plugin Stockdio Historical Chart Cross-Site Scripting (2.7.2)
MySQL CVE-2019-2834 Vulnerability (CVE-2019-2834)
WordPress Plugin 3D Banner Rotator 'upload.php' Arbitrary File Upload (2.1)