CVE-2010-4517 Information

Description

SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla! when magic_quotes_gpc is disabled allows remote attackers to execute arbitrary SQL commands via the char parameter in an item action to index.php.

Reference

http://www.exploit-db.com/exploits/15714

Share on: