SECUNIA ADVISORY ID:
ManhLuat93 has discovered a vulnerability in the Jobline component
for Joomla!, which can be exploited by malicious people to conduct
SQL injection attacks.
Input passed to the "search" parameter in
components/com_jobline/jobline.php is not properly sanitised before
being used in SQL queries. This can be exploited to manipulate SQL
queries by injecting arbitrary SQL code.
Successful exploitation requires that "magic_quotes_gpc" is
The vulnerability is confirmed in version 22.214.171.124. Other versions may
also be affected.
Edit the source code to ensure that input is properly sanitised.
PROVIDED AND/OR DISCOVERED BY: