Joomla! Component JE Photo Gallery 1.1 - 'categoryid' SQL Injection 漏洞概述 EDB-ID: 45930 Author: Ihsan Sencan Type: WEBAPPS Platform: PHP Date: 2018-12-03 Vulnerable App: Joomla! Component JE Photo Gallery 1.1 Category: Webapps Tested on: WIN7 x64/KaliLinux x64 影响范围 Vendor Homepage: https://joomlaextensions.co.in Software Link: http://joomlaextensions.co.in/download/1387375463_JE%20PhotoGallery%20(%20J-%203.0%20).zip 修复方案 暂无具体修复方案,建议更新到最新版本或联系厂商获取补丁。 POC代码