Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

368 résultats

CVE-2009-4575 Cross-site scripting (XSS) vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 RC2 for Joomla! com_qpersonel · 1 source · MEDIUM CVSS 4.3 CVE-2009-4573 Multiple cross-site scripting (XSS) vulnerabilities in the Joomulus (mod_joomulus) module 2.0 for Joomla! mod_joomulus · 1 source · MEDIUM CVSS 4.3 CVE-2009-4255 Cross-site scripting (XSS) vulnerability in the You!Hostit! Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 4.3 CVE-2009-4233 Cross-site scripting (XSS) vulnerability in modules/mod_yj_whois.php in the YJ Whois component 1.0x and 1.5.x for Joomla! mod_yj_whois · 1 source · MEDIUM CVSS 4.3 CVE-2009-4232 The Kide Shoutbox (com_kide) component 0.4.6 for Joomla! com_kide · 1 source · MEDIUM CVSS 5.0 CVE-2009-4199 Multiple SQL injection vulnerabilities in the Mambo Resident (aka Mos Res or com_mosres) component 1.0f for Mambo and Joomla!, when magic_quotes_gpc is disable… com_mosres · 1 source · MEDIUM CVSS 6.8 CVE-2009-4168 Cross-site scripting (XSS) vulnerability in Roy Tanck tagcloud.swf, as used in the WP-Cumulus plugin before 1.23 for WordPress and the Joomulus module 2.0 and… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 4.3 CVE-2009-4157 Multiple cross-site scripting (XSS) vulnerabilities in index.php in the ProofReader (com_proofreader) component 1.0 RC9 and earlier for Joomla! com_proofreader · 1 source · MEDIUM CVSS 4.3 CVE-2009-4059 SQL injection vulnerability in the JoomClip (com_joomclip) component for Joomla! com_joomclip · 1 source · MEDIUM CVSS 6.8 CVE-2009-3661 Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! com_djcatalog · 1 source · MEDIUM CVSS 6.8 CVE-2009-3368 Cross-site scripting (XSS) vulnerability in the Hotel Booking Reservation System (aka HBS or com_hbssearch) component for Joomla! com_hbssearch · 1 source · MEDIUM CVSS 4.3 CVE-2009-3155 Cross-site scripting (XSS) vulnerability in gmap.php in the Almond Classifieds (com_aclassf) component 7.5 for Joomla! com_aclassf · 1 source · MEDIUM CVSS 4.3 CVE-2009-3053 Directory traversal vulnerability in the Agora (com_agora) component 3.0.0b for Joomla! com_agora · 1 source · MEDIUM CVSS 6.8 CVE-2009-2554 SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for J… com_jobline · 1 source · MEDIUM CVSS 6.8 CVE-2009-2100 Directory traversal vulnerability in the JoomlaPraise Projectfork (com_projectfork) component 2.0.10 for Joomla! com_projectfork · 1 source · MEDIUM CVSS 5.0 CVE-2009-1496 Directory traversal vulnerability in the Cmi Marketplace (com_cmimarketplace) component 0.1 for Joomla! com_cmimarketplace · 1 source · MEDIUM CVSS 5.0 CVE-2008-6482 PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is enabled, a… com_treeg · 1 source · MEDIUM CVSS 6.8 CVE-2009-0730 Multiple SQL injection vulnerabilities in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla!, when magic_quotes_gpc is disabled, allow remote att… com_gigcalendar · 1 source · MEDIUM CVSS 6.8 CVE-2008-6222 Directory traversal vulnerability in the Pro Desk Support Center (com_pro_desk) component 1.0 and 1.2 for Joomla! com_pro_desk · 1 source · MEDIUM CVSS 5.0 CVE-2008-6172 Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, al… com_rwcards · 1 source · MEDIUM CVSS 6.8