Vulnerabilities > Joomla > COM Expshop
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-06-27 | CVE-2008-2892 | SQL Injection vulnerability in multiple products SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_payment action to index.php. | 7.5 |