Home > Content Management, SQL Injection > Joomla SportFusion Component “cid[0]” SQLi

Joomla SportFusion Component “cid[0]” SQLi

October 23rd, 2009

Application: Joomla
Affected Version: version 0.2.3 and others.
Vendor’s URL: SportFusion Component
Bug Type: SQL Injection
Risk Level: Critical

Solution:
Edit the source code to ensure that input is properly sanitised.

Content Management, SQL Injection

Comments are closed.