← Back

Com K2

com_k2

Vendor: Joomlaworks • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Joomlaworks
1Com K2
Apr 23, 2026
Jul 9, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the K2 (com_k2) component 1.0.1 Beta and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category parameter in an itemlist action to index.php.