|
|
Joomdle for Joomla "course_id" Remote SQL Injection Vulnerability
|
A vulnerability has been identified in Joomdle (component for Joomla), which could be exploited by attackers to manipulate and inject SQL queries. This issue is caused by an input validation error when processing the "course_id" parameter, which could be exploited by malicious people to conduct SQL injection attacks.
Joomdle (component for Joomla)
VUPEN Security is not aware of any vendor-supplied patch.
http://www.vupen.com/english/advisories/2010/1923
Public Exploit or PoC
 |
Available in customer area as part of
VUPEN Vulnerability Notification Service.
Vulnerability reported by kaMtiEz.
2010-07-27 : Initial release
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|
|
|
Monthly Statistics |
 |
|
|
|
| |
|
Try VUPEN
VNS |
 |
|
 |
|
| |
|
 |
| |
|
|
|
|