Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

368 résultats

CVE-2007-3249 Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla! mod_lettermansubscribe · 1 source · MEDIUM CVSS 4.3 CVE-2007-3130 Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! com_jd · 1 source · MEDIUM CVSS 6.8 CVE-2007-2319 PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla! mod_as_category · 1 source · MEDIUM CVSS 6.8 CVE-2007-2196 PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! com_Jambook · 1 source · MEDIUM CVSS 6.8 CVE-2007-2144 PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! com_jpack · 1 source · MEDIUM CVSS 6.8 CVE-2007-2089 Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla! com_articles · 1 source · MEDIUM CVSS 6.8 CVE-2007-2005 Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2007-1776 SQL injection vulnerability in index.php in the DesignForJoomla.com D4J eZine (com_ezine) 2.8 and earlier component for Joomla! com_ezine · 1 source · MEDIUM CVSS 6.8 CVE-2006-7125 Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the HTTP Re… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2006-7122 Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions befo… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2006-6962 PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! com_rsgallery2 · 1 source · MEDIUM CVSS 6.8 CVE-2006-6420 Multiple cross-site scripting (XSS) vulnerabilities in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier f… com_jce · 1 source · MEDIUM CVSS 6.8 CVE-2006-6166 Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.0.4 for Joomla! com_jce · 1 source · MEDIUM CVSS 6.8 CVE-2006-5106 Cross-site scripting (XSS) vulnerability in FacileForms before 1.4.7 for Mambo and Joomla!, when either register_globals or RG_EMULATION is enabled, allows rem… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 5.1 CVE-2006-5096 Multiple cross-site scripting (XSS) vulnerabilities in index.php in VirtueMart (formerly known as mambo-phpShop) Joomla! com_contact · 1 source · MEDIUM CVSS 6.8 CVE-2006-5048 Multiple PHP remote file inclusion vulnerabilities in Security Images (com_securityimages) component 3.0.5 and earlier for Joomla! com_securityimages · 1 source · MEDIUM CVSS 6.8 CVE-2006-5045 Unspecified vulnerability in PollXT component (com_pollxt) 1.22.07 and earlier for Joomla! com_pollxt · 1 source · MEDIUM CVSS 6.8 CVE-2006-5043 Multiple PHP remote file inclusion vulnerabilities in the Joomlaboard Forum Component (com_joomlaboard) before 1.1.2 for Joomla! com_joomlaboard · 1 source · MEDIUM CVSS 6.8 CVE-2006-4553 PHP remote file inclusion vulnerability in plugin.class.php in the com_comprofiler Components 1.0 RC2 for Mambo and Joomla! com_comprofiler_component · 1 source · MEDIUM CVSS 6.8 CVE-2006-4242 PHP remote file inclusion vulnerability in install.jim.php in the JIM 1.0.1 component for Joomla or Mambo allows remote attackers to execute arbitrary PHP code… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 5.1