CVE-2010-5056
SQL injection vulnerability in the GBU Facebook (com_gbufacebook) component 1.0.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the face_id parameter in a show_face action to index.php.
Date published : 2011-11-22
http://www.securityfocus.com/bid/39576
http://packetstormsecurity.org/1004-exploits/joomlagbufacebook-sql.txt