Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

399 résultats

CVE-2014-7982 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2014-7981 SQL injection vulnerability in Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2014-7229 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2014-6632 Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vecto… Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2014-6631 Cross-site scripting (XSS) vulnerability in com_media in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2013-5583 Joomla! Cross-site Scripting vulnerability Joomla CMS · 3 sources · MEDIUM CVSS 4.3 CVE-2013-5576 administrator/components/com_media/helpers/media.php in the media manager in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 6.8 CVE-2013-3267 Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2013-3242 plugins/system/remember/remember.php in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.5 CVE-2013-3059 Cross-site scripting (XSS) vulnerability in the Voting plugin in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2013-3058 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2013-3057 Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and list the privileges of arbit… Joomla CMS · 1 source · MEDIUM CVSS 4.0 CVE-2013-3056 Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and delete the private messages… Joomla CMS · 1 source · MEDIUM CVSS 4.0 CVE-2013-1455 Joomla! 3.0.x through 3.0.2 allows attackers to obtain sensitive information via unspecified vectors related to an "Undefined variable." Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2013-1454 Joomla! 3.0.x through 3.0.2 allows attackers to obtain sensitive information via unspecified vectors related to "Coding errors." Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2013-1453 plugins/system/highlight/highlight.php in Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2012-1599 Joomla! 1.5.x before 1.5.26 does not properly check permissions, which allows attackers to obtain sensitive "administrative back end information" via unknown v… Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-1598 Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to "insufficient randomness" and a "password reset vulnerability." Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2012-5827 Joomla! 2.5.x before 2.5.8 and 3.0.x before 3.0.2 allows remote attackers to conduct clickjacking attacks via unspecified vectors involving "Inadequate protect… Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-4532 Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3