Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

585 résultats

CVE-2009-3155 Cross-site scripting (XSS) vulnerability in gmap.php in the Almond Classifieds (com_aclassf) component 7.5 for Joomla! com_aclassf · 1 source · MEDIUM CVSS 4.3 CVE-2009-3053 Directory traversal vulnerability in the Agora (com_agora) component 3.0.0b for Joomla! com_agora · 1 source · MEDIUM CVSS 6.8 CVE-2009-2554 SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for J… com_jobline · 1 source · MEDIUM CVSS 6.8 CVE-2009-2100 Directory traversal vulnerability in the JoomlaPraise Projectfork (com_projectfork) component 2.0.10 for Joomla! com_projectfork · 1 source · MEDIUM CVSS 5.0 CVE-2009-1940 Cross-site scripting (XSS) vulnerability in the administrator panel in the com_users core component for Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2009-1939 Cross-site scripting (XSS) vulnerability in the JA_Purity template for Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2009-1938 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2009-1496 Directory traversal vulnerability in the Cmi Marketplace (com_cmimarketplace) component 0.1 for Joomla! com_cmimarketplace · 1 source · MEDIUM CVSS 5.0 CVE-2009-1280 Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla! Joomla CMS · 1 source · MEDIUM CVSS 6.8 CVE-2008-6482 PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is enabled, a… com_treeg · 1 source · MEDIUM CVSS 6.8 CVE-2009-0730 Multiple SQL injection vulnerabilities in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla!, when magic_quotes_gpc is disabled, allow remote att… com_gigcalendar · 1 source · MEDIUM CVSS 6.8 CVE-2008-6222 Directory traversal vulnerability in the Pro Desk Support Center (com_pro_desk) component 1.0 and 1.2 for Joomla! com_pro_desk · 1 source · MEDIUM CVSS 5.0 CVE-2008-6172 Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, al… com_rwcards · 1 source · MEDIUM CVSS 6.8 CVE-2008-6080 Directory traversal vulnerability in download.php in the ionFiles (com_ionfiles) 4.4.2 component for Joomla! com_ionfiles · 1 source · MEDIUM CVSS 5.0 CVE-2009-0378 Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! com_beamospetition · 1 source · MEDIUM CVSS 4.3 CVE-2009-0113 Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! XStandard (identification probable) · 1 source · MEDIUM CVSS 5.0 CVE-2008-5793 Multiple PHP remote file inclusion vulnerabilities in the Clickheat - Heatmap stats (com_clickheat) component 1.0.1 for Joomla! com_clickheat · 1 source · MEDIUM CVSS 6.8 CVE-2008-4764 Directory traversal vulnerability in the eXtplorer module (com_extplorer) 2.0.0 RC2 and earlier in Joomla! com_extplorer · 1 source · MEDIUM CVSS 5.0 CVE-2008-4107 The (1) rand and (2) mt_rand functions in PHP 5.2.6 do not produce cryptographically strong random numbers, which allows attackers to leverage exposures in pro… Joomla CMS · 1 source · MEDIUM CVSS 5.1 CVE-2008-4104 Joomla! Open Redirect vulnerability Joomla CMS · 2 sources · MEDIUM CVSS 5.8