CVE-2010-5028

NUCLEI

Joomla! com_jejob 1.0 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2010-5028. PoCs published by v3n0m, Valentin. A Nuclei detection template is also available.

AI-analyzed exploit summary This is a SQL injection exploit for Joomla Component com_jejob 1.0, targeting the 'catid' parameter. The PoC demonstrates a union-based SQLi to extract user credentials from the 'jos_users' table.

Description

SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to index.php.

Exploits (2)

exploitdb WORKING POC VERIFIED
by v3n0m · textwebappsphp
https://www.exploit-db.com/exploits/12782

This is a SQL injection exploit for Joomla Component com_jejob 1.0, targeting the 'catid' parameter. The PoC demonstrates a union-based SQLi to extract user credentials from the 'jos_users' table.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Joomla Component com_jejob 1.0
No auth needed
Prerequisites: Joomla with com_jejob component installed and accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Valentin · textwebappsphp
https://www.exploit-db.com/exploits/12601

This is a writeup describing a Local File Inclusion (LFI) vulnerability in the Joomla Component JE Job. It provides example URIs and additional information on how to trigger MySQL errors and inject characters through the URL.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: JE Job Component for Joomla, version unknown/latest
No auth needed
Prerequisites: Joomla with JE Job Component installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Nuclei Templates (1)

Joomla! Component JE Job 1.0 - Local File Inclusion
HIGHby daffainfo

References (6)

Core 6
Core References
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/1269
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/40193
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/39837
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/12782
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/58599
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/64708

Scores

EPSS 0.0234
EPSS Percentile 85.3%

Details

CWE
CWE-89
Status published
Products (1)
harmistechnology/com_jejob 1.0
Published Nov 02, 2011
Tracked Since Feb 18, 2026