Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2008-2633
Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla!
HIGH
CVSS 7.5
CVE-2008-2632
SQL injection vulnerability in the acctexp (com_acctexp) component 0.12.x and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2008-2568
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2008-2564
SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2008-1935
SQL injection vulnerability in the Filiale 1.0.4 component for Joomla!
HIGH
CVSS 7.5
CVE-2008-1533
Unspecified vulnerability in the XML-RPC Blogger API plugin in Joomla!
MEDIUM
CVSS 6.8
CVE-2008-0829
SQL injection vulnerability in jooget.php in the Joomlapixel Jooget!
HIGH
CVSS 7.5
CVE-2008-0795
SQL injection vulnerability in index.php in the MGFi XfaQ (com_xfaq) 1.2 component for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2008-0561
SQL injection vulnerability in index.php in the Arthur Konze AkoGallery (com_akogallery) 2.5 beta component for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2008-0517
SQL injection vulnerability in index.php in the Darko Selesi EstateAgent (com_estateagent) 0.1 component for Mambo 4.5.x and Joomla!
HIGH
CVSS 7.5
CVE-2007-6645
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2007-6644
Joomla! before 1.5 RC4 allows remote authenticated administrators to promote arbitrary users to the administrator group, in violation of the intended security…
MEDIUM
CVSS 6.5
CVE-2007-6643
Cross-site scripting (XSS) vulnerability in the com_poll component in Joomla!
MEDIUM
CVSS 4.3
CVE-2007-6642
Multiple cross-site request forgery (CSRF) vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2007-6272
Multiple SQL injection vulnerabilities in index.php in Joomla!
HIGH
CVSS 7.5
CVE-2007-5577
Multiple cross-site scripting (XSS) vulnerabilities in Joomla!
MEDIUM
CVSS 4.3
CVE-2007-5457
Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-5451
PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-5427
Cross-site scripting (XSS) vulnerability in the com_search component in Joomla!
MEDIUM
CVSS 4.3
CVE-2007-5410
PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joomla!
MEDIUM
CVSS 6.8