JE Ajax Event Calendar "event_id" Parameter SQL Injection

  Bookmark
 and Share

JE Ajax Event Calendar is a component for the Joomla content manager. The JE Ajax Event Calendar "com_jeajaxeventcalendar" component for Joomla is exposed to an SQL injection issue because it fails to sufficiently sanitize user-supplied data to the "event_id" parameter in the "index.php" script before using it in an SQL query.

Ref: http://www.securityfocus.com/bid/45050

10.49.29 - CVE: Not Available
Platform: Web Application - SQL Injection Issue