Security Advisory
CVE-2009-2390
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SQL injection vulnerability in the BookFlip (com_bookflip) component 2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter to index.php.