CVE-2010-4517
JExtensions JE Auto (com_jeauto) 1.0 - SQL Injection via Char Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-4517. PoCs published by Salvatore Fresta.
AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in JE Auto 1.0, a Joomla component. The vulnerability allows arbitrary SQL code injection via the 'char' parameter when magic_quotes_gpc is disabled.
Description
SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the char parameter in an item action to index.php.
Exploits (1)
This is a writeup describing a SQL injection vulnerability in JE Auto 1.0, a Joomla component. The vulnerability allows arbitrary SQL code injection via the 'char' parameter when magic_quotes_gpc is disabled.