Your Cart
Your Cart is currently empty.

All foobla staff are in local holiday from 30th April to 1st May 2012. The support services will be limited in this time. From 2rd May 2012, our awesome support services will be back to normal.
Thank you for using foobla's products. 

Joomla Extensions

Joomla ExtensionsDeveloping Joomla Extensions is our main business since 2007. More than 8 commercial Joomla Extensions as well as 7+ free Joomla Extensions...

Joomla Updater

Joomla UpdaterWe care of keeping Joomla sites up-to-date, Joomla Updater is one of our networks which provide installing & updating...

Download it FREE

Joomla Custom Work

Joomla Custom Work Joomla Custom Work, we offer Joomla Custom Work per hour rate, or you can hire our Joomla Expert monthly

Get a Quote

[fixed] foobla RSS Feed Creator for Joomla "id" SQL Injection

E-mail Print

foobla RSS Feed Creator for Joomla "id" SQL Injection

Description:
Chip d3 Bi0s has reported a vulnerability in foobla RSS Feed Creator for Joomla, which can be exploited by malicious people to conduct SQL injection attacks.

Input passed via the "id" parameter to index.php (if "option" is set to "com_jlord_rss" and "task" to "feed") is not properly sanitised before being used in an SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.

Source: http://secunia.com/advisories/36748/

Solution: upgrade to latest version (1.5.1.1_build20090922)

See how to get newer version here.

 

Latest News

Earn with us

Twitter Facebook RSS

Get promotion news & updates