CVE-2009-3835 Information

Description

SQL injection vulnerability in the JShop (com_jshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pid parameter in a product action to index.php.

Reference

http://www.packetstormsecurity.org/0910-exploits/joomlajshop-sql.txt http://www.securityfocus.com/bid/36808 https://exchange.xforce.ibmcloud.com/vulnerabilities/53944

Share on: