Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters.
Joomla
Exploit
CVE-2011-1151
NVD
Refer to CVE-2011-1151 NVD advisory