cve/2009/CVE-2009-3661.md
2024-06-09 00:33:16 +00:00

753 B

CVE-2009-3661

Description

Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a showItem action and (2) cid parameter in a show action to index.php.

POC

Reference

Github

No PoCs found on GitHub currently.