SQL injection vulnerability in index.php in the Atapin Jokes (comjokes) 1.0 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a CatView action.
SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (comricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.