Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2017-5214
The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla!
HIGH
CVSS 7.5
CVE-2016-1000122
XSS and SQLi in Huge IT Joomla Slider v1.0.9 extension
HIGH
CVSS 7.2
CVE-2016-1000120
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla
HIGH
CVSS 7.2
CVE-2016-1000119
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla
HIGH
CVSS 7.2
CVE-2015-8566
The Session package 1.x before 1.3.1 for Joomla!
HIGH
CVSS 7.5
CVE-2015-6513
Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla!
HIGH
CVSS 7.5
CVE-2015-2562
Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla!
HIGH
CVSS 7.5
CVE-2015-1477
SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla!
HIGH
CVSS 7.5
CVE-2014-4960
Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla!
HIGH
CVSS 7.5
CVE-2013-7219
SQL injection vulnerability in vote.php in the 2Glux Sexy Polling (com_sexypolling) component before 1.0.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-6503
Unspecified vulnerability in the NinjaXplorer component before 1.0.7 for Joomla!
HIGH
CVSS 10.0
CVE-2010-5286
Directory traversal vulnerability in Jstore (com_jstore) component for Joomla!
HIGH
CVSS 10.0
CVE-2010-5280
Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla!
HIGH
CVSS 7.5
CVE-2012-5230
Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-5101
SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla!
HIGH
CVSS 7.5
CVE-2006-7247
SQL injection vulnerability in the Weblinks (com_weblinks) component for Joomla!
HIGH
CVSS 7.5
CVE-2012-4868
SQL injection vulnerability in news.php in the Kunena component 1.7.2 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5113
SQL injection vulnerability in frontend/models/techfoliodetail.php in Techfolio (com_techfolio) component 1.0 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5112
SQL injection vulnerability in Alameda (com_alameda) component before 1.0.1 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5099
SQL injection vulnerability in helper/popup.php in the ccNewsletter (mod_ccnewsletter) component 1.0.7 through 1.0.9 for Joomla!
HIGH
CVSS 7.5