CVE-2010-4838
com_jsupport 1.5.6 - Authenticated SQL Injection via Alpha Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-4838. PoCs published by Valentin.
AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in the Joomla component com_jsupport version 1.5.6. It provides examples of vulnerable URLs but does not include functional exploit code.
Description
SQL injection vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote authenticated users, with Public Back-end permissions, to execute arbitrary SQL commands via the alpha parameter in a (1) listTickets or (2) listFaqs action to administrator/index.php.
Exploits (1)
This is a writeup describing a SQL injection vulnerability in the Joomla component com_jsupport version 1.5.6. It provides examples of vulnerable URLs but does not include functional exploit code.