CVE-2010-1720

Publication date

2010-05-04 15:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the katid parameter in a qpListele action to index.php.