Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2006-7009
Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors.
HIGH
CVSS 7.5
CVE-2006-7008
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2007-0387
SQL injection vulnerability in models/category.php in the Weblinks component for Joomla!
HIGH
CVSS 7.5
CVE-2007-0375
Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) example.ph…
MEDIUM
CVSS 5.0
CVE-2007-0374
SQL injection vulnerability in (1) Joomla!
HIGH
CVSS 7.5
CVE-2007-0373
Multiple SQL injection vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-6834
Multiple unspecified vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-6833
com_categories in Joomla!
HIGH
CVSS 7.5
CVE-2006-6832
Cross-site scripting (XSS) vulnerability in Joomla!
MEDIUM
CVSS 4.3
CVE-2006-4996
Unspecified vulnerability in JoomlaLib (com_joomlalib) before 1.2.2 for Joomla!
HIGH
CVSS 10.0
CVE-2006-4476
Multiple unspecified vulnerabilities in Joomla!
HIGH
CVSS 7.5
CVE-2006-4475
Joomla! before 1.0.11 does not limit access to the Admin Popups functionality, which has unknown impact and attack vectors.
HIGH
CVSS 7.5
CVE-2006-4474
Multiple cross-site scripting (XSS) vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-4473
Unspecified vulnerability in com_content in Joomla!
MEDIUM
CVSS 5.1
CVE-2006-4472
Multiple unspecified vulnerabilities in Joomla!
HIGH
CVSS 7.5
CVE-2006-4471
The Admin Upload Image functionality in Joomla!
MEDIUM
CVSS 6.5
CVE-2006-4470
Joomla! before 1.0.11 omits some checks for whether _VALID_MOS is defined, which allows attackers to have an unknown impact, possibly resulting in PHP remote f…
HIGH
CVSS 7.5
CVE-2006-4469
Unspecified vulnerability in PEAR.php in Joomla!
HIGH
CVSS 7.5
CVE-2006-4468
Multiple unspecified vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-4466
Joomla! before 1.0.11 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash…
MEDIUM
CVSS 5.0