CVE-2010-4898

Gantry 3.0.10 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in the Gantry (com_gantry) component 3.0.10 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter to index.php.

Exploits (1)

exploitdb WORKING POC
by jdc · bashwebappsphp
https://www.exploit-db.com/exploits/14911

Scores

EPSS 0.0015
EPSS Percentile 35.5%

Details

CWE
CWE-89
Status published
Products (1)
gantry-framework/com_gantry 3.0.10
Published Oct 08, 2011
Tracked Since Feb 18, 2026