Description
SQL injection vulnerability in the IP-Tech JQuarks (com_jquarks) Component 0.2.3, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: some of these details are obtained from third party information.
References (4)
Core 4
Core References
Patch, Vendor Advisory x_refsource_confirm
http://www.iptechinside.com/labs/news/show/6
Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/38203
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/38623
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/62332
Scores
EPSS
0.0106
EPSS Percentile
61.1%
Details
CWE
CWE-89
Status
published
Products (2)
iptechinside/com_jquarks
0.2.2
iptechinside/com_jquarks
0.2.3
Published
Feb 23, 2010
Tracked Since
Feb 18, 2026