Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

644 résultats

CVE-2017-5214 The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! b2j_contact · 1 source · HIGH CVSS 7.5 CVE-2016-1000122 XSS and SQLi in Huge IT Joomla Slider v1.0.9 extension slider · 1 source · HIGH CVSS 7.2 CVE-2016-1000120 SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla catalog · 1 source · HIGH CVSS 7.2 CVE-2016-1000119 SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla catalog · 1 source · HIGH CVSS 7.2 CVE-2015-8566 The Session package 1.x before 1.3.1 for Joomla! Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2015-6513 Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla! j2store · 1 source · HIGH CVSS 7.5 CVE-2015-2562 Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla! ecommerce_wd · 1 source · HIGH CVSS 7.5 CVE-2015-1477 SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! j-classifiedsmanager · 1 source · HIGH CVSS 7.5 CVE-2014-4960 Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla! com_youtubegallery · 1 source · HIGH CVSS 7.5 CVE-2013-7219 SQL injection vulnerability in vote.php in the 2Glux Sexy Polling (com_sexypolling) component before 1.0.9 for Joomla! com_sexypolling · 1 source · HIGH CVSS 7.5 CVE-2012-6503 Unspecified vulnerability in the NinjaXplorer component before 1.0.7 for Joomla! com_ninjaxplorer · 1 source · HIGH CVSS 10.0 CVE-2010-5286 Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! com_jstore · 1 source · HIGH CVSS 10.0 CVE-2010-5280 Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla! com_cbe · 1 source · HIGH CVSS 7.5 CVE-2012-5230 Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla! com_jesubmit · 1 source · HIGH CVSS 7.5 CVE-2012-5101 SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla! Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2006-7247 SQL injection vulnerability in the Weblinks (com_weblinks) component for Joomla! com_weblinks · 1 source · HIGH CVSS 7.5 CVE-2012-4868 SQL injection vulnerability in news.php in the Kunena component 1.7.2 for Joomla! Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2011-5113 SQL injection vulnerability in frontend/models/techfoliodetail.php in Techfolio (com_techfolio) component 1.0 for Joomla! com_techfolio · 1 source · HIGH CVSS 7.5 CVE-2011-5112 SQL injection vulnerability in Alameda (com_alameda) component before 1.0.1 for Joomla! com_alameda · 1 source · HIGH CVSS 7.5 CVE-2011-5099 SQL injection vulnerability in helper/popup.php in the ccNewsletter (mod_ccnewsletter) component 1.0.7 through 1.0.9 for Joomla! mod_ccnewsletter · 1 source · HIGH CVSS 7.5