CVE-2010-1372

HD FLV Player 1.3 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in the HD FLV Player (com_hdflvplayer) component 1.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by kaMtiEz · perlwebappsphp
https://www.exploit-db.com/exploits/33673

Scores

EPSS 0.0050
EPSS Percentile 66.3%

Details

CWE
CWE-89
Status published
Products (1)
hdflvplayer/com_hdflvplayer 1.3
Published Apr 13, 2010
Tracked Since Feb 18, 2026