1 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 4

SQL injection vulnerability in the allCineVid component (com_allcinevid) 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. Vulnerabilidad de inyección SQL en team.php en el componente allCineVid (com_allcinevid) v1.0.0 para Joomla!, permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro id en index.php • https://www.exploit-db.com/exploits/16010 http://adv.salvatorefresta.net/allCineVid_Joomla_Component_1.0.0_Blind_SQL_Injection_Vulnerability-18012011.txt http://secunia.com/advisories/42967 http://www.exploit-db.com/exploits/16010 http://www.securityfocus.com/bid/45840 https://exchange.xforce.ibmcloud.com/vulnerabilities/64823 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •