Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2014-6632
Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vecto…
HIGH
CVSS 7.5
CVE-2014-4960
Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla!
HIGH
CVSS 7.5
CVE-2013-7219
SQL injection vulnerability in vote.php in the 2Glux Sexy Polling (com_sexypolling) component before 1.0.9 for Joomla!
HIGH
CVSS 7.5
CVE-2013-1453
plugins/system/highlight/highlight.php in Joomla!
HIGH
CVSS 7.5
CVE-2012-6503
Unspecified vulnerability in the NinjaXplorer component before 1.0.7 for Joomla!
HIGH
CVSS 10.0
CVE-2012-1598
Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to "insufficient randomness" and a "password reset vulnerability."
HIGH
CVSS 7.5
CVE-2010-5286
Directory traversal vulnerability in Jstore (com_jstore) component for Joomla!
HIGH
CVSS 10.0
CVE-2010-5280
Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla!
HIGH
CVSS 7.5
CVE-2012-5230
Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-1116
SQL injection vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2012-5101
SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla!
HIGH
CVSS 7.5
CVE-2006-7247
SQL injection vulnerability in the Weblinks (com_weblinks) component for Joomla!
HIGH
CVSS 7.5
CVE-2012-4868
SQL injection vulnerability in news.php in the Kunena component 1.7.2 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5113
SQL injection vulnerability in frontend/models/techfoliodetail.php in Techfolio (com_techfolio) component 1.0 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5112
SQL injection vulnerability in Alameda (com_alameda) component before 1.0.1 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5099
SQL injection vulnerability in helper/popup.php in the ccNewsletter (mod_ccnewsletter) component 1.0.7 through 1.0.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-3554
SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla!
HIGH
CVSS 7.5
CVE-2012-2747
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2011-4829
SQL injection vulnerability in the com_listing component in Barter Sites component 1.3 for Joomla!
HIGH
CVSS 7.5
CVE-2011-4823
Multiple SQL injection vulnerabilities in Vik Real Estate (com_vikrealestate) component 1.0 for Joomla!
HIGH
CVSS 7.5