Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-2909. PoCs published by Salvatore Fresta.
AI-analyzed exploit summary This is a writeup detailing a SQL injection vulnerability in TTVideo 1.0, a Joomla component. The vulnerability arises from improper sanitization of the 'cid' parameter in ttvideo.php, allowing arbitrary SQL code injection.
Description
SQL injection vulnerability in ttvideo.php in the TTVideo (com_ttvideo) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter in a video action to index.php.
Exploits (1)
This is a writeup detailing a SQL injection vulnerability in TTVideo 1.0, a Joomla component. The vulnerability arises from improper sanitization of the 'cid' parameter in ttvideo.php, allowing arbitrary SQL code injection.