Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2012-2747
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2011-4332
Joomla! vulnerable to Cross-site Scripting
MEDIUM
CVSS 4.3
CVE-2011-4321
The password reset functionality in Joomla!
MEDIUM
CVSS 5.0
CVE-2011-3747
Joomla! 1.6.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error mess…
MEDIUM
CVSS 5.0
CVE-2011-2892
Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct…
MEDIUM
CVSS 4.3
CVE-2011-2891
Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installa…
MEDIUM
CVSS 5.0
CVE-2011-2890
The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla!
MEDIUM
CVSS 5.0
CVE-2011-2889
templates/system/error.php in Joomla!
MEDIUM
CVSS 5.0
CVE-2011-2710
Multiple cross-site scripting (XSS) vulnerabilities in Joomla!
MEDIUM
CVSS 4.3
CVE-2011-2509
Joomla! vulnerable to Cross-site Scripting
MEDIUM
CVSS 4.3
CVE-2011-2488
Joomla! before 1.5.23 does not properly check for errors, which allows remote attackers to obtain sensitive information via unspecified vectors.
MEDIUM
CVSS 5.0
CVE-2010-4696
Multiple SQL injection vulnerabilities in Joomla!
HIGH
CVSS 7.5
CVE-2010-4166
Multiple SQL injection vulnerabilities in Joomla!
HIGH
CVSS 7.5
CVE-2010-3712
Cross-site scripting (XSS) vulnerability in Joomla!
MEDIUM
CVSS 4.3
CVE-2010-2535
Multiple cross-site scripting (XSS) vulnerabilities in the Back End in Joomla!
LOW
CVSS 3.5
CVE-2010-2679
SQL injection vulnerability in the Weblinks (com_weblinks) component in Joomla!
HIGH
CVSS 7.5
CVE-2010-1649
Joomla! vulnerable to Cross-site Scripting
MEDIUM
CVSS 4.3
CVE-2009-3946
Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
MEDIUM
CVSS 5.0
CVE-2009-3945
Unspecified vulnerability in the Front-End Editor in the com_content component in Joomla!
MEDIUM
CVSS 5.5
CVE-2008-6852
SQL injection vulnerability in the Ice Gallery (com_ice) component 0.5 beta 2 for Joomla!
HIGH
CVSS 7.5