Users of HD Video Share component for Joomla! ara affected by a vulnerability that allows to launch SQL injection attack.
Input data passed via „id“ parameter to index.php are not properly sanitised before being used in SQL queries. An attacker may manipulate queries by injecting arbitrary SQL code.
Flaws were confirmed in version 1.3. Other versions may be vulnerable also.
Source: Secunia
16.01.2012