See how paxxgallery compares to other vendors in security performance
SQL injection vulnerability in index.php in the PAXXGallery (compaxxgallery) 0.2 component for Mambo and Joomla! allow remote attackers to execute arbitrary SQL commands via (1) the iid parameter in a view action, and possibly (2) the userid parameter.