Skip to main content

CVE detail

CVE-2009-3835

SQL injection vulnerability in the JShop (com_jshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pid parameter in a product action to index.php.

CVSS 7.5 · High