The JEXTN Video Gallery extension 3.0.5 for Joomla! has SQL Injection via the id parameter in a view=category action.Referenceshttps://www.exploit-db.com/exploits/43330/