CVE-2009-0373
ElearningForce Flash Magazine Deluxe - SQL Injection via mag_id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-0373. PoCs published by TurkGuvenligi.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the Joomla component Flash Magazine Deluxe. The PoC shows how an attacker can inject malicious SQL queries via the 'mag_id' parameter to extract database information such as the version.
Description
SQL injection vulnerability in the ElearningForce Flash Magazine Deluxe (com_flashmagazinedeluxe) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mag_id parameter in a magazine action to index.php.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the Joomla component Flash Magazine Deluxe. The PoC shows how an attacker can inject malicious SQL queries via the 'mag_id' parameter to extract database information such as the version.