CVE-2009-3446 – Joomla! Component com_mytube (user_id) 1.0 Beta - Blind SQL Injection
https://notcve.org/view.php?id=CVE-2009-3446
SQL injection vulnerability in the MyRemote Video Gallery (com_mytube) component 1.0 Beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter in a videos action to index.php. Vulnerabilidad de inyección SQL en el componente MyRemote Video Gallery (com_mytube)v1.0 para Joomla! permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro "user_id" en una acción "videos" a index.php. • https://www.exploit-db.com/exploits/9733 http://www.exploit-db.com/exploits/9733 http://www.securityfocus.com/bid/36470 https://exchange.xforce.ibmcloud.com/vulnerabilities/53401 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •