Security Advisory

CVE-2009-4428

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-12-28 18:27:00
Last updated 2024-08-07 07:01:20
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in the JoomPortfolio (com_joomportfolio) component 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the secid parameter in a showcat action to index.php.