SQL injection vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the katid parameter in a qpListele action to index.php.
| Software | From | Fixed in |
|---|---|---|
| qproje / com_qpersonel | - | 1.0.2.x |