CVE-2009-3661
11.10.2009, 22:30
Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a showItem action and (2) cid parameter in a show action to index.php.
| Vendor | Product | Version |
|---|---|---|
| blueconstantmedia | com_djcatalog | * |
𝑥
= Vulnerable software versions
References