Exploitation Summary
EIP tracks 2 public exploits for CVE-2010-4365. PoCs published by ALTBTA, L0rd CrusAd3r.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the JE Ajax Event Calendar Joomla component, allowing an attacker to extract user credentials from the database via a UNION-based attack.
Description
SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an alleventlist_more action to index.php.
Exploits (2)
This exploit demonstrates a SQL injection vulnerability in the JE Ajax Event Calendar Joomla component, allowing an attacker to extract user credentials from the database via a UNION-based attack.
The provided text describes a SQL injection vulnerability in Joomla JE Ajax Event Calendar version 1.0.5. It includes a demo URL showing the vulnerable parameter but lacks functional exploit code.