Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

222 résultats

CVE-2018-5975 SQL Injection exists in the Smart Shoutbox 3.0.0 component for Joomla! smart_shoutbox · 1 source · CRITICAL CVSS 9.8 CVE-2018-5974 SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! simplecalendar · 1 source · CRITICAL CVSS 9.8 CVE-2018-5971 SQL Injection exists in the MediaLibrary Free 4.0.12 component for Joomla! medialibrary · 1 source · CRITICAL CVSS 9.8 CVE-2018-5970 SQL Injection exists in the JGive 2.0.9 component for Joomla! jgive · 1 source · CRITICAL CVSS 9.8 CVE-2018-6609 SQL Injection exists in the JSP Tickets 1.1 component for Joomla! jsp_tickets · 1 source · CRITICAL CVSS 9.8 CVE-2018-6605 SQL Injection exists in the Zh BaiduMap 3.0.0.1 component for Joomla! zh_baidumap · 1 source · CRITICAL CVSS 9.8 CVE-2018-6604 SQL Injection exists in the Zh YandexMap 6.2.1.0 component for Joomla! zh_yandexmap · 1 source · CRITICAL CVSS 9.8 CVE-2018-6582 SQL Injection exists in the Zh GoogleMap 8.4.0.0 component for Joomla! zh_googlemap · 1 source · CRITICAL CVSS 9.8 CVE-2018-6581 SQL Injection exists in the JMS Music 1.1.1 component for Joomla! jms_music · 1 source · CRITICAL CVSS 9.8 CVE-2018-6580 Arbitrary file upload exists in the Jimtawl 2.1.6 and 2.2.5 component for Joomla! jimtawl · 1 source · CRITICAL CVSS 9.8 CVE-2018-6579 SQL Injection exists in the JEXTN Reverse Auction 3.1.0 component for Joomla! reverse_auction · 1 source · CRITICAL CVSS 9.8 CVE-2018-6578 SQL Injection exists in the JE PayperVideo 3.0.0 component for Joomla! je_paypervideo · 1 source · CRITICAL CVSS 9.8 CVE-2018-6577 SQL Injection exists in the JEXTN Membership 3.1.0 component for Joomla! membership · 1 source · CRITICAL CVSS 9.8 CVE-2018-6575 SQL Injection exists in the JEXTN Classified 1.0.0 component for Joomla! classified · 1 source · CRITICAL CVSS 9.8 CVE-2018-6376 In Joomla! before 3.8.4, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Hathor postinstall message. Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2018-6398 SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla! event_calendar · 1 source · CRITICAL CVSS 9.8 CVE-2018-6395 SQL Injection exists in the Visual Calendar 3.1.3 component for Joomla! visual_calendar · 1 source · CRITICAL CVSS 9.8 CVE-2018-5985 SQL Injection exists in the LiveCRM SaaS Cloud 1.0 component for Joomla! livecrm_saas_cloud · 1 source · CRITICAL CVSS 9.8 CVE-2018-5984 SQL Injection exists in the Tumder (An Arcade Games Platform) 2.1 component for Joomla! tumder · 1 source · CRITICAL CVSS 9.8 CVE-2018-5696 The iJoomla com_adagency plugin 6.0.9 for Joomla! ad_agency · 1 source · CRITICAL CVSS 9.8