36009Third-party advisory
http://secunia.com/advisories/36009 CVE-2009-3215
Joomla! Component IXXO Cart! Standalone and - SQL Injection
Record summary
CVE-2009-3215 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in IXXO Cart Standalone before 3.9.6.1, and the IXXO Cart component for Joomla! 1.0.x, allows remote attackers to execute arbitrary SQL commands via the parent parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBJoomla! Component IXXO Cart! Standalone and - SQL InjectionExploitDB exploitby sm0k3Not analyzed1 file
References
6davidsopas.com
http://www.davidsopas.com/2009/07/25/ixxo-cart-standalone-and-joomla-component-sql-injection 9276exploit
http://www.exploit-db.com/exploits/9276 20090725 IXXO Cart! Standalone and Joomla Component SQL Injectionmailing list
http://www.securityfocus.com/archive/1/505266/100/0/threaded 35810vdb entry
http://www.securityfocus.com/bid/35810 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2009-3215