Unrated severityNVD Advisory· Published Jul 28, 2010· Updated Apr 29, 2026
CVE-2010-2909
CVE-2010-2909
Description
SQL injection vulnerability in ttvideo.php in the TTVideo (com_ttvideo) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter in a video action to index.php.
Affected products
1- cpe:2.3:a:toughtomato:com_ttvideo:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- adv.salvatorefresta.net/TTVideo_1.0_Joomla_Component_SQL_Injection_Vulnerability-27072010.txtnvdExploit
- osvdb.org/66630nvdExploit
- www.exploit-db.com/exploits/14481nvdExploit
- secunia.com/advisories/40716nvdVendor Advisory
- www.toughtomato.com/downloads/16-comttvideo-1-0-1/filenvdURL Repurposed
- www.securityfocus.com/archive/1/512685/100/0/threadednvd
- www.securityfocus.com/archive/1/512709/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/60662nvd
News mentions
0No linked articles in our index yet.