Unrated severityNVD Advisory· Published Nov 1, 2011· Updated Apr 29, 2026
CVE-2010-4977
CVE-2010-4977
Description
SQL injection vulnerability in menu.php in the Canteen (com_canteen) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the mealid parameter to index.php.
Affected products
1- cpe:2.3:a:miniwork:com_canteen:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- packetstormsecurity.org/1007-exploits/joomlacanteen-lfisql.txtnvdExploit
- www.salvatorefresta.net/files/adv/Canteen%20Joomla%20Component%201.0%20Multiple%20Remote%20Vulnerabilities-04072010.txtnvdExploit
- www.securityfocus.com/bid/41358nvdExploit
- secunia.com/advisories/40503nvdVendor Advisory
- osvdb.org/66031nvd
- securityreason.com/securityalert/8495nvd
- www.securityfocus.com/archive/1/512170/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/60103nvd
News mentions
0No linked articles in our index yet.