SQL injection vulnerability in includes/countdlorlink.inc.php in the astatsPRO (comastatspro) 1.0.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to getfile.php, a different vector than CVE-2008-0839. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
SQL injection vulnerability in refer.php in the astatsPRO (comastatspro) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.